CVE-2017-5073: Use After Free
An use after free flaw was found in the print preview component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=716474
External References:
https://chromereleases.googleblog.com/2017/06/stable-channel-update-for-desktop.html
Other sources
Use after free in print preview in Blink in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
— MITRE
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5073?
CVE-2017-5073 has been assigned a high severity rating due to its potential to allow remote exploitation via crafted HTML.
How do I fix CVE-2017-5073?
To fix CVE-2017-5073, update Google Chrome to version 59.0.3071.86 or later.
Which versions of Google Chrome are affected by CVE-2017-5073?
CVE-2017-5073 affects Google Chrome versions prior to 59.0.3071.86 for Linux, Windows, and Mac, and earlier than 59.0.3071.92 for Android.
What type of vulnerability is CVE-2017-5073?
CVE-2017-5073 is a use-after-free vulnerability in the print preview component of Blink in Google Chrome.
Can CVE-2017-5073 be exploited remotely?
Yes, CVE-2017-5073 allows a remote attacker to perform an out-of-bounds memory read via a crafted HTML page.