First published: Wed Sep 05 2018(Updated: )
Missing validation in Mojo in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/chromium-browser | <69.0.3497.81 | 69.0.3497.81 |
Google Chrome | <69.0.3497.81 | |
Debian Linux | =9.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Workstation | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-16068 has a medium severity rating as it allows a potential sandbox escape in Google Chrome.
To mitigate CVE-2018-16068, upgrade to Google Chrome or Chromium version 69.0.3497.81 or later.
CVE-2018-16068 affects Google Chrome versions prior to 69.0.3497.81.
CVE-2018-16068 could potentially allow remote attackers to perform a sandbox escape via a crafted HTML page.
CVE-2018-16068 is applicable to multiple operating systems where affected versions of Google Chrome or Chromium are installed.