Use after free in audio in Google Chrome prior to 79.0.3945.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
References
| Link | Resource |
|---|---|
| https://crbug.com/1029462 | Permissions Required |
| https://chromereleases.googleblog.com/2020/01/stable-channel-update-for-desktop.html | Vendor Advisory |
| http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00004.html | Mailing List Third Party Advisory |
| http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00007.html | Mailing List Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PSUXNEUS6N42UJNQVCQSTSM6CSW2REPG/ | Mailing List Third Party Advisory |
| https://access.redhat.com/errata/RHSA-2020:0084 | Third Party Advisory |
| http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00023.html | Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/N5CIQCVS6E3ULJCNU7YJXJPO2BLQZDTK/ | |
| https://seclists.org/bugtraq/2020/Jan/27 | |
| https://www.debian.org/security/2020/dsa-4606 | |
| https://security.gentoo.org/glsa/202003-08 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2020-01-10 22:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-6377
Mitre link : CVE-2020-6377
JSON object : View
Products Affected
redhat
- enterprise_linux_desktop
- enterprise_linux_workstation
fedoraproject
- fedora
- chrome
opensuse
- leap
- backports_sle
CWE
CWE-416
Use After Free
