CVE-2020-6451: Use After Free
Published Apr 13, 2020
·Updated
Use after free in WebAudio in Google Chrome prior to 80.0.3987.162 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Affected Software
5 affected components
Google Chrome<80.0.3987.162
Fedoraproject Fedora=30
Fedoraproject Fedora=31
openSUSE Backports SLE=15.0-sp1
openSUSE Leap=15.1
Remediation
Patch Available
Event History
Apr 13, 2020
CVE Published
via MITRE·05:31 PM
Data Sourced
via MITRE·05:31 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6451?
CVE-2020-6451 has been classified as high severity due to its potential for heap corruption exploitation.
2
How do I fix CVE-2020-6451?
To fix CVE-2020-6451, update Google Chrome to version 80.0.3987.162 or later.
3
What platforms are affected by CVE-2020-6451?
CVE-2020-6451 affects Google Chrome and specific versions of Fedora and openSUSE.
4
What is a use after free vulnerability in the context of CVE-2020-6451?
A use after free vulnerability like CVE-2020-6451 occurs when a program continues to use memory after it has been freed, potentially leading to security risks.
5
Can CVE-2020-6451 be exploited remotely?
Yes, CVE-2020-6451 can be exploited by a remote attacker via a crafted HTML page.