Insufficient validation of an image filter in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page.
http://www.securityfocus.com/bid/104309
http://www.securitytracker.com/id/1041014
https://access.redhat.com/errata/RHSA-2018:1815
https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
Source: MITRE
Published: 2019-01-09
Updated: 2019-01-14
Type: CWE-125
Base Score: 6.8
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P
Impact Score: 6.4
Exploitability Score: 8.6
Severity: MEDIUM
Base Score: 8.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Impact Score: 5.9
Exploitability Score: 2.8
Severity: HIGH
OR
OR
OR
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
ID | Name | Product | Family | Severity |
---|---|---|---|---|
123234 | openSUSE Security Update : Chromium (openSUSE-2019-548) | Nessus | SuSE Local Security Checks | high |
120558 | Fedora 28 : chromium (2018-7c80aaef26) | Nessus | Fedora Local Security Checks | high |
700358 | Google Chrome < 67.0.3396.62 Multiple Vulnerabilities | Nessus Network Monitor | Web Clients | high |
111345 | openSUSE Security Update : Chromium (openSUSE-2018-759) | Nessus | SuSE Local Security Checks | high |
110820 | Debian DSA-4237-1 : chromium-browser - security update | Nessus | Debian Local Security Checks | high |
110625 | Fedora 27 : chromium (2018-09b59b0227) | Nessus | Fedora Local Security Checks | high |
110406 | RHEL 6 : chromium-browser (RHSA-2018:1815) | Nessus | Red Hat Local Security Checks | high |
110275 | openSUSE Security Update : chromium (openSUSE-2018-546) | Nessus | SuSE Local Security Checks | high |
110254 | FreeBSD : chromium -- multiple vulnerabilities (427b0f58-644c-11e8-9e1b-e8e0b747a45a) | Nessus | FreeBSD Local Security Checks | high |
110229 | Google Chrome < 67.0.3396.62 Multiple Vulnerabilities (macOS) | Nessus | MacOS X Local Security Checks | high |
110228 | Google Chrome < 67.0.3396.62 Multiple Vulnerabilities | Nessus | Windows | high |