First published: Thu May 04 2023(Updated: )
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2023">Google Chrome Releases</a> for more information.</p>
Credit: asnine chrome-cve-admin@google.com chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Edge (Chromium-based) | ||
Microsoft Edge (Chromium-based) Extended Stable | ||
Microsoft Edge | <113.0.1774.50 | |
Google Chrome | <113.0.5672.126 | |
Debian Debian Linux | =11.0 | |
Fedoraproject Fedora | =37 | |
Fedoraproject Fedora | =38 | |
Google Chrome | <113.0.5672.126 | 113.0.5672.126 |
debian/chromium | <=90.0.4430.212-1~deb10u1 | 116.0.5845.180-1~deb11u1 120.0.6099.109-1~deb11u1 119.0.6045.199-1~deb12u1 120.0.6099.109-1~deb12u1 120.0.6099.109-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-2725 is a vulnerability in Chromium that allows an attacker to exploit heap corruption via a crafted HTML page.
CVE-2023-2725 has a severity rating of High (8.8) according to the Chromium security severity rating.
CVE-2023-2725 affects Google Chrome, Microsoft Edge (Chromium-based), Microsoft Edge (Chromium-based) Extended Stable, Microsoft Edge, Debian Debian Linux, and Fedoraproject Fedora.
To fix the CVE-2023-2725 vulnerability, update Chrome to version 113.0.5672.126 or later, or refer to the security advisories provided by Microsoft, Debian, and Fedoraproject for the respective affected software.
You can find more information about CVE-2023-2725 on the Microsoft Security Response Center website, Google Chrome Releases blog, and Chromium bug tracker.