First published: Tue Jun 14 2022(Updated: )
Inappropriate implementation in Sandbox in Google Chrome on Windows prior to 112.0.5615.49 allowed a remote attacker who had compromised the renderer process to perform arbitrary read/write via a malicious file. (Chromium security severity: High)
Credit: chrome-cve-admin@google.com Anonymous
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <112.0.5615.49 | 112.0.5615.49 |
Google Chrome (Trace Event) | <112.0.5615.49 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The severity of CVE-2023-2313 is classified as High.
To fix CVE-2023-2313, update Google Chrome to version 112.0.5615.49 or later.
CVE-2023-2313 affects Google Chrome versions prior to 112.0.5615.49 on Windows.
CVE-2023-2313 is an inappropriate implementation in the Sandbox of Google Chrome.
Yes, CVE-2023-2313 allows a remote attacker to perform arbitrary read/write operations if they compromised the renderer process.