CVE-2024-5493

Name
CVE-2024-5493
Description
Heap buffer overflow in WebRTC in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_30.html
https://issues.chromium.org/issues/339877165
chrome-cve-admin@google.com https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/D5SQOWDIVBXQYQPPBSCH7EFISYAOCTHD/
chrome-cve-admin@google.com https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZW4TZXVPN3NLZ4UDGZP6OASUM4OVLXX2/

Match rules

CPE URI Source package Min version Max version
chrome >= 0 < 125.0.6422.141
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* chrome >= None < 125.0.6422.141

Vulnerable and fixed packages

Source package Branch Version Maintainer Status