First published: Sat Apr 01 2023(Updated: )
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2023">Google Chrome Releases</a> for more information.</p>
Credit: Mark Brand Google Project Zero chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/chromium | <=90.0.4430.212-1~deb10u1 | 116.0.5845.180-1~deb11u1 120.0.6099.109-1~deb11u1 119.0.6045.199-1~deb12u1 120.0.6099.109-1~deb12u1 120.0.6099.109-1 |
Microsoft Edge | ||
Microsoft Edge Beta | <114.0.1823.37 | |
Google Chrome (Trace Event) | <114.0.5735.90 | 114.0.5735.90 |
Google Chrome (Trace Event) | <114.0.5735.90 | |
Google Chrome | <114.0.5735.90 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The severity of CVE-2023-2934 is high (8.8) according to the Chromium security severity rating.
CVE-2023-2934 affects Google Chrome versions prior to 114.0.5735.90 and can potentially allow a remote attacker to exploit heap corruption through a crafted HTML page.
CVE-2023-2934 affects Microsoft Edge versions prior to 114.0.1823.37 (Chromium-based).
To fix CVE-2023-2934 in Microsoft Edge (Chromium-based), update to version 115.0.5790.170-1~deb11u1, 114.0.5735.198-1~deb12u1, 115.0.5790.170-1~deb12u1, 115.0.5790.102-2, or 115.0.5790.170-1.
To fix CVE-2023-2934 in Debian Chromium, update to version 90.0.4430.212-1~deb10u1 or 112.0.5615.138-1~deb11u1.