First published: Mon Apr 13 2020(Updated: )
Out of bounds read in WebSQL in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit: chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <81.0.4044.92 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Fedoraproject Fedora | =30 | |
Fedoraproject Fedora | =31 | |
Fedoraproject Fedora | =32 | |
Opensuse Backports | =sle-15-sp1 | |
openSUSE Leap | =15.1 | |
debian/chromium | 90.0.4430.212-1~deb10u1 116.0.5845.180-1~deb11u1 120.0.6099.129-1~deb11u1 119.0.6045.199-1~deb12u1 120.0.6099.129-1~deb12u1 120.0.6099.129-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-6455.
Google Chrome prior to version 81.0.4044.92, Debian Linux 9.0 and 10.0, Fedora 30, 31, and 32, openSUSE Leap 15.1, and Debian Chromium package.
The severity of CVE-2020-6455 is high, with a severity value of 8.8.
An attacker can potentially exploit heap corruption via a crafted HTML page.
Update Google Chrome to version 81.0.4044.92 or later, update Debian Linux to the provided versions, update Fedora to the latest version, update openSUSE Leap to version 15.1, or update the Debian Chromium package.