CVE-2019-5785

MEDIUM

Description

Incorrect convexity calculations in Skia in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.

References

https://chromereleases.googleblog.com/2019/01/stable-channel-update-for-desktop.html

https://crbug.com/899689

Details

Source: MITRE

Published: 2019-06-27

Updated: 2019-07-01

Type: CWE-787

Risk Information

CVSS v2.0

Base Score: 4.3

Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3.0

Base Score: 6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Impact Score: 3.6

Exploitability Score: 2.8

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Tenable Plugins

View all (44 total)

IDNameProductFamilySeverity
127579Oracle Linux 8 : thunderbird (ELSA-2019-1144)NessusOracle Linux Local Security Checks
high
127459NewStart CGSL MAIN 4.05 : thunderbird Multiple Vulnerabilities (NS-SA-2019-0169)NessusNewStart CGSL Local Security Checks
high
127427NewStart CGSL MAIN 4.05 : firefox Multiple Vulnerabilities (NS-SA-2019-0153)NessusNewStart CGSL Local Security Checks
high
127319NewStart CGSL MAIN 4.06 : thunderbird Multiple Vulnerabilities (NS-SA-2019-0095)NessusNewStart CGSL Local Security Checks
high
127308NewStart CGSL MAIN 4.06 : firefox Multiple Vulnerabilities (NS-SA-2019-0090)NessusNewStart CGSL Local Security Checks
high
127257NewStart CGSL CORE 5.04 / MAIN 5.04 : thunderbird Multiple Vulnerabilities (NS-SA-2019-0062)NessusNewStart CGSL Local Security Checks
high
127245NewStart CGSL CORE 5.04 / MAIN 5.04 : firefox Multiple Vulnerabilities (NS-SA-2019-0056)NessusNewStart CGSL Local Security Checks
medium
124845RHEL 8 : thunderbird (RHSA-2019:1144)NessusRed Hat Local Security Checks
high
123817openSUSE Security Update : MozillaThunderbird (openSUSE-2019-1162)NessusSuSE Local Security Checks
high
123781SUSE SLED15 / SLES15 Security Update : MozillaFirefox (SUSE-SU-2019:0871-1)NessusSuSE Local Security Checks
high
123747SUSE SLED12 / SLES12 Security Update : MozillaFirefox (SUSE-SU-2019:0852-1)NessusSuSE Local Security Checks
high
123581GLSA-201904-07 : Mozilla Thunderbird and Firefox: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
123562CentOS 7 : thunderbird (CESA-2019:0681)NessusCentOS Local Security Checks
high
123561CentOS 6 : thunderbird (CESA-2019:0680)NessusCentOS Local Security Checks
high
700486Mozilla Firefox < 65.0.1 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
medium
123488RHEL 7 : thunderbird (RHSA-2019:0681)NessusRed Hat Local Security Checks
high
123487RHEL 6 : thunderbird (RHSA-2019:0680)NessusRed Hat Local Security Checks
high
123485Oracle Linux 7 : thunderbird (ELSA-2019-0681)NessusOracle Linux Local Security Checks
high
123484Oracle Linux 6 : thunderbird (ELSA-2019-0680)NessusOracle Linux Local Security Checks
high
122732GLSA-201903-04 : Mozilla Firefox: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
122493openSUSE Security Update : MozillaThunderbird (openSUSE-2019-251)NessusSuSE Local Security Checks
high
122492openSUSE Security Update : MozillaFirefox (openSUSE-2019-248)NessusSuSE Local Security Checks
medium
122482Ubuntu 14.04 LTS / 16.04 LTS / 18.04 LTS / 18.10 : Thunderbird vulnerabilities (USN-3897-1)NessusUbuntu Local Security Checks
high
122470openSUSE Security Update : MozillaThunderbird (openSUSE-2019-250)NessusSuSE Local Security Checks
medium
122402Mozilla Thunderbird < 60.5.1NessusWindows
medium
122401Mozilla Thunderbird < 60.5.1NessusMacOS X Local Security Checks
medium
122390Scientific Linux Security Update : firefox on SL7.x x86_64 (20190221)NessusScientific Linux Local Security Checks
medium
122389Scientific Linux Security Update : firefox on SL6.x i386/x86_64 (20190219)NessusScientific Linux Local Security Checks
medium
122352CentOS 7 : firefox (CESA-2019:0374)NessusCentOS Local Security Checks
medium
122351CentOS 6 : firefox (CESA-2019:0373)NessusCentOS Local Security Checks
medium
122336RHEL 7 : firefox (RHSA-2019:0374)NessusRed Hat Local Security Checks
medium
122335RHEL 6 : firefox (RHSA-2019:0373)NessusRed Hat Local Security Checks
medium
122327Oracle Linux 7 : firefox (ELSA-2019-0374)NessusOracle Linux Local Security Checks
medium
122326Oracle Linux 6 : firefox (ELSA-2019-0373)NessusOracle Linux Local Security Checks
medium
122302openSUSE Security Update : MozillaFirefox (openSUSE-2019-202)NessusSuSE Local Security Checks
medium
122269Debian DSA-4392-1 : thunderbird - security updateNessusDebian Local Security Checks
high
122268Debian DSA-4391-1 : firefox-esr - security updateNessusDebian Local Security Checks
medium
122263Debian DLA-1678-1 : thunderbird security updateNessusDebian Local Security Checks
high
122262Debian DLA-1677-1 : firefox-esr security updateNessusDebian Local Security Checks
medium
122233Mozilla Firefox < 65.0.1NessusWindows
medium
122232Mozilla Firefox < 65.0.1NessusMacOS X Local Security Checks
medium
122194Mozilla Firefox ESR < 60.5.1NessusWindows
medium
122193Mozilla Firefox ESR < 60.5.1NessusMacOS X Local Security Checks
medium
122165FreeBSD : mozilla -- multiple vulnerabilities (18211552-f650-4d86-ba4f-e6d5cbfcdbeb)NessusFreeBSD Local Security Checks
medium