Use After Free Vulnerability in Google Chrome's Print Preview Feature
CVE-2017-5073

8.8HIGH

Summary

A use after free vulnerability exists in the print preview feature of Google Chrome. This flaw allows remote attackers to exploit out of bounds memory reads by crafting malicious HTML pages. Targeted versions prior to 59.0.3071.86 for Linux, Windows, and Mac, along with versions before 59.0.3071.92 for Android, are susceptible to this exploitation, potentially leading to exposure of sensitive data.

Affected Version(s)

Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and 59.0.3071.92 for Android Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and 59.0.3071.92 for Android

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.