CVE-2018-6062: Buffer Overflow
A heap buffer overflow flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=780104
External References:
https://chromereleases.googleblog.com/2018/03/stable-channel-update-for-desktop.html
Other sources
Heap overflow write in Skia in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6062?
CVE-2018-6062 has a high severity due to the potential for exploitation through a heap buffer overflow.
How do I fix CVE-2018-6062?
To fix CVE-2018-6062, update Chromium to version 65.0.3325.146 or later.
Which versions of Chromium are affected by CVE-2018-6062?
Chromium versions prior to 65.0.3325.146 are affected by CVE-2018-6062.
What components of Chromium does CVE-2018-6062 affect?
CVE-2018-6062 specifically affects the Skia component of the Chromium browser.
Is CVE-2018-6062 exploitable remotely?
Yes, CVE-2018-6062 can be exploited remotely, which makes it a significant security concern.