CVE-2023-2929: Out of bounds write in Swiftshader
Chromium: CVE-2023-2929 Out of bounds write in Swiftshader
Other sources
Out of bounds write in Swiftshader in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-2929?
CVE-2023-2929 is classified as a high-severity vulnerability due to its potential for exploitation through an out-of-bounds write condition.
How do I fix CVE-2023-2929?
To fix CVE-2023-2929, update to the latest versions of affected browsers, specifically Google Chrome version 114.0.5735.90 or later and Microsoft Edge based on Chromium version 114.0.1823.37 or later.
Which software is affected by CVE-2023-2929?
CVE-2023-2929 affects multiple versions of Google Chrome and Microsoft Edge (Chromium-based) browsers.
Is CVE-2023-2929 exploitable in the wild?
There is currently no public information indicating that CVE-2023-2929 is being actively exploited in the wild.
What types of systems are vulnerable to CVE-2023-2929?
CVE-2023-2929 impacts systems running vulnerable versions of Chromium-based browsers, which include both desktop and potentially mobile platforms depending on their respective updates.