CVE-2018-18341: Buffer Overflow
Published Dec 5, 2018
·Updated
A heap buffer overflow flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=901030
External References:
https://chromereleases.googleblog.com/2018/12/stable-channel-update-for-desktop.html
Other sources
An integer overflow leading to a heap buffer overflow in Blink in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Affected Software
7 affected componentsFixes available
debian/chromium
90.0.4430.212-1~deb10u1116.0.5845.180-1~deb11u1120.0.6099.129-1~deb11u1119.0.6045.199-1~deb12u1120.0.6099.129-1~deb12u1120.0.6099.129-1
redhat/chromium-browser<71.0.3578.80
71.0.3578.80
Google Chrome<71.0.3578.80
redhat Linux Desktop=6.0
redhat Linux Server=6.0
redhat Linux Workstation=6.0
Debian Debian Linux=9.0
Event History
Dec 11, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness