First published: Wed Dec 05 2018(Updated: )
An out of bounds read flaw was found in the V8 component of the Chromium browser. Upstream bug(s): <a href="https://code.google.com/p/chromium/issues/detail?id=907714">https://code.google.com/p/chromium/issues/detail?id=907714</a> External References: <a href="https://chromereleases.googleblog.com/2018/12/stable-channel-update-for-desktop.html">https://chromereleases.googleblog.com/2018/12/stable-channel-update-for-desktop.html</a>
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <71.0.3578.80 | |
Redhat Linux Desktop | =6.0 | |
Redhat Linux Server | =6.0 | |
Redhat Linux Workstation | =6.0 | |
Debian Debian Linux | =9.0 | |
redhat/chromium-browser | <71.0.3578.80 | 71.0.3578.80 |
debian/chromium | 90.0.4430.212-1~deb10u1 116.0.5845.180-1~deb11u1 120.0.6099.129-1~deb11u1 119.0.6045.199-1~deb12u1 120.0.6099.129-1~deb12u1 120.0.6099.129-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-18359 is a vulnerability that allowed a remote attacker to perform an out of bounds memory read in Google Chrome prior to version 71.0.3578.80.
This vulnerability can be exploited by an attacker through a crafted HTML page.
The severity of CVE-2018-18359 is high with a severity value of 8.8.
Google Chrome versions prior to 71.0.3578.80, Redhat Linux Desktop 6.0, Redhat Linux Server 6.0, Redhat Linux Workstation 6.0, and Debian Debian Linux 9.0 are affected.
To fix CVE-2018-18359, update to Google Chrome version 71.0.3578.80 or later, or apply the appropriate patch provided by Redhat or Debian for their affected Linux distributions.