First published: Fri Feb 17 2017(Updated: )
WebRTC in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <=55.0.2883.87 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-5009 is classified as high due to its potential for remote code execution.
To fix CVE-2017-5009, users should update Google Chrome to version 56.0.2924.76 or later for Linux, Windows, and Mac, and version 56.0.2924.87 or later for Android.
CVE-2017-5009 is associated with a heap corruption vulnerability that can be exploited using a crafted HTML page.
CVE-2017-5009 affects Google Chrome versions prior to 56.0.2924.76 for Linux, Windows, and Mac, and prior to 56.0.2924.87 for Android.
All users of affected Google Chrome versions on supported operating systems are potentially at risk from CVE-2017-5009.