CVE-2023-4427
Debian Security Advisory 5483-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
El acceso a memoria fuera de los límites en V8 en Google Chrome anterior a 116.0.5845.110 permitía a un atacante remoto realizar una lectura de memoria fuera de los límites a través de una página HTML manipulada. (Severidad de seguridad de Chrome: alta)
An update that fixes 5 vulnerabilities is now available. This update for chromium fixes the following issues. Chromium 116.0.5845.110. Out of bounds memory access in V8. Out of bounds memory access in CSS Use after free in Loader Use after free in Vulkan. Out of bounds memory access in Fonts.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2023-08-18 CVE Reserved
- 2023-08-22 CVE Published
- 2023-10-05 First Exploit
- 2025-02-13 CVE Updated
- 2025-06-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-125: Out-of-bounds Read
CAPEC
References (9)
URL | Date | SRC |
---|---|---|
https://packetstorm.news/files/id/174951 | 2023-10-05 | |
https://github.com/tianstcht/CVE-2023-4427 | 2024-02-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://chromereleases.googleblog.com/2023/08/chrome-desktop-stable-update.html | 2024-01-31 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Chrome Search vendor "Google" for product "Chrome" | < 116.0.5845.110 Search vendor "Google" for product "Chrome" and version " < 116.0.5845.110" | - |
Affected
| ||||||
Fedoraproject Search vendor "Fedoraproject" | Fedora Search vendor "Fedoraproject" for product "Fedora" | 37 Search vendor "Fedoraproject" for product "Fedora" and version "37" | - |
Affected
| ||||||
Fedoraproject Search vendor "Fedoraproject" | Fedora Search vendor "Fedoraproject" for product "Fedora" | 38 Search vendor "Fedoraproject" for product "Fedora" and version "38" | - |
Affected
| ||||||
Fedoraproject Search vendor "Fedoraproject" | Fedora Search vendor "Fedoraproject" for product "Fedora" | 39 Search vendor "Fedoraproject" for product "Fedora" and version "39" | - |
Affected
|