CVE-2023-2934: Out of bounds memory access in Mojo
Chromium: CVE-2023-2934 Out of bounds memory access in Mojo
Other sources
Out of bounds memory access in Mojo in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-2934?
The severity of CVE-2023-2934 is high (8.8) according to the Chromium security severity rating.
How does CVE-2023-2934 affect Google Chrome?
CVE-2023-2934 affects Google Chrome versions prior to 114.0.5735.90 and can potentially allow a remote attacker to exploit heap corruption through a crafted HTML page.
How does CVE-2023-2934 affect Microsoft Edge?
CVE-2023-2934 affects Microsoft Edge versions prior to 114.0.1823.37 (Chromium-based).
How can I fix CVE-2023-2934 in Microsoft Edge (Chromium-based)?
To fix CVE-2023-2934 in Microsoft Edge (Chromium-based), update to version 115.0.5790.170-1~deb11u1, 114.0.5735.198-1~deb12u1, 115.0.5790.170-1~deb12u1, 115.0.5790.102-2, or 115.0.5790.170-1.
How can I fix CVE-2023-2934 in Debian Chromium?
To fix CVE-2023-2934 in Debian Chromium, update to version 90.0.4430.212-1~deb10u1 or 112.0.5615.138-1~deb11u1.