Use After Free Vulnerability in Google Chrome for Linux, Windows, and Mac
CVE-2017-5019
6.3MEDIUM
Key Information:
- Vendor
- Vendor
- CVE Published:
- 17 February 2017
Summary
A use after free vulnerability exists in Google Chrome, allowing a remote attacker to exploit heap corruption through a specially crafted HTML page. This could lead to unauthorized actions being carried out on behalf of the victim, potentially compromising the security of the user's system. The vulnerability affects multiple operating systems, including Linux, Windows, and Mac, as well as the Android version of the browser.
Affected Version(s)
Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved