CVE-2023-1218: Use after free in WebRTC
Use after free in WebRTC in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-1213
- CVE-2023-1214
- CVE-2023-1215
- CVE-2023-1216
- CVE-2023-1217
- CVE-2023-1219
- CVE-2023-1220
- CVE-2023-1221
- CVE-2023-1222
- CVE-2023-1223
- CVE-2023-1224
- CVE-2023-1225
- CVE-2023-1226
- CVE-2023-1227
- CVE-2023-1228
- CVE-2023-1229
- CVE-2023-1230
- CVE-2023-1231
- CVE-2023-2314
- CVE-2023-1232
- CVE-2023-1233
- CVE-2023-1234
- CVE-2023-1235
- CVE-2023-1236
Frequently Asked Questions
What is CVE-2023-1218?
CVE-2023-1218 is a vulnerability in WebRTC in Google Chrome that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page.
What is the severity of CVE-2023-1218?
The severity of CVE-2023-1218 is high (8.8).
How does CVE-2023-1218 affect Google Chrome?
CVE-2023-1218 affects Google Chrome versions prior to 111.0.5563.64.
How can CVE-2023-1218 be exploited?
CVE-2023-1218 can be exploited by a remote attacker via a crafted HTML page.
Where can I find more information about CVE-2023-1218?
You can find more information about CVE-2023-1218 in the references provided: [here](https://chromereleases.googleblog.com/2023/03/stable-channel-update-for-desktop.html) and [here](https://crbug.com/1413628).