CVE-2023-1529: Out of bounds memory access in WebHID
Chromium: CVE-2023-1529 Out of bounds memory access in WebHID
Other sources
Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a malicious HID device. (Chromium security severity: High)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-1529?
CVE-2023-1529 is a vulnerability in Chromium that allows a remote attacker to potentially exploit heap corruption via a malicious HID device.
What is the severity of CVE-2023-1529?
CVE-2023-1529 has a severity rating of 9.8 (Critical).
How does CVE-2023-1529 affect Microsoft Edge?
CVE-2023-1529 affects Microsoft Edge and Microsoft Edge (Chromium-based) versions prior to 111.0.1661.54.
How does CVE-2023-1529 affect Google Chrome?
CVE-2023-1529 affects Google Chrome versions prior to 111.0.5563.110.
How can I fix CVE-2023-1529?
To fix CVE-2023-1529, update Microsoft Edge (Chromium-based) to version 111.0.1661.54 or later, or update Google Chrome to version 111.0.5563.110 or later.