CVE-2019-5792: Integer overflow in PDFium
An integer overflow flaw was found in the PDFium component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=914983
External References:
https://chromereleases.googleblog.com/2019/03/stable-channel-update-for-desktop12.html
Other sources
Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.
— MITRE
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2019-5792?
CVE-2019-5792 has been categorized as a high severity vulnerability due to potential out of bounds memory access.
How do I fix CVE-2019-5792?
To fix CVE-2019-5792, update your Google Chrome or Chromium-browser to version 73.0.3683.75 or later.
What component does CVE-2019-5792 affect?
CVE-2019-5792 affects the PDFium component of the Chromium browser.
Can CVE-2019-5792 be exploited remotely?
Yes, CVE-2019-5792 can potentially be exploited remotely through a crafted PDF file.
What versions are affected by CVE-2019-5792?
CVE-2019-5792 affects versions of Google Chrome and Chromium-browser prior to 73.0.3683.75.