CVE-2020-15964: Insufficient data validation in media
Insufficient data validation in media in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2020-15964?
CVE-2020-15964 is classified as a high-severity vulnerability due to its potential to allow remote attackers to exploit heap corruption.
How do I fix CVE-2020-15964?
To fix CVE-2020-15964, update Google Chrome or Chromium to version 85.0.4183.121 or later.
What software is affected by CVE-2020-15964?
CVE-2020-15964 affects Google Chrome versions prior to 85.0.4183.121 and various versions of Chromium on Debian and openSUSE.
Can CVE-2020-15964 be exploited remotely?
Yes, CVE-2020-15964 allows remote attackers to exploit the vulnerability via a crafted HTML page.
What kind of attack does CVE-2020-15964 facilitate?
CVE-2020-15964 facilitates heap corruption attacks that can potentially lead to arbitrary code execution.