CVE-2023-2933: Use after free in PDF
Chromium: CVE-2023-2933 Use after free in PDF
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-2933?
CVE-2023-2933 has been classified as a high-severity vulnerability due to a use-after-free flaw in the Chromium codebase.
How do I fix CVE-2023-2933?
To fix CVE-2023-2933, update your Chrome or Edge browser to the latest version: 114.0.5735.90 or later for Chrome and 114.0.1823.37 or later for Edge.
Which software is affected by CVE-2023-2933?
CVE-2023-2933 affects Google Chrome versions up to 114.0.5735.90 and Microsoft Edge versions up to 114.0.1823.37.
When was CVE-2023-2933 discovered?
CVE-2023-2933 was disclosed and addressed in updates released in May 2023.
What type of vulnerability is CVE-2023-2933?
CVE-2023-2933 is a use-after-free vulnerability that can potentially allow an attacker to execute arbitrary code.