CVE-2018-6060: Use After Free
An use after free flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=780919
External References:
https://chromereleases.googleblog.com/2018/03/stable-channel-update-for-desktop.html
Other sources
Use after free in WebAudio in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6060?
CVE-2018-6060 has a severity rating that indicates a potential security risk due to a use after free flaw.
How do I fix CVE-2018-6060?
To fix CVE-2018-6060, update to the latest version of the Chromium browser or Google Chrome, specifically version 65.0.3325.146 or newer.
Which versions are affected by CVE-2018-6060?
CVE-2018-6060 affects versions of Chromium browser up to and including 65.0.3325.146.
What component is impacted by CVE-2018-6060?
CVE-2018-6060 impacts the Blink component of the Chromium browser.
Is there a workaround for CVE-2018-6060?
There are no known workarounds for CVE-2018-6060; the best mitigation is to apply the latest updates.