CVE-2023-4075: Use after free in Cast
Chromium: CVE-2023-4075 Use after free in Cast
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Use after free in Cast in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-4075?
The severity of CVE-2023-4075 is high.
How does CVE-2023-4075 affect Google Chrome?
CVE-2023-4075 affects Google Chrome versions prior to 115.0.5790.170.
How does CVE-2023-4075 affect Microsoft Edge?
CVE-2023-4075 affects Microsoft Edge versions up to 115.0.1901.200 (non-Chromium-based) and Chromium-based Edge versions.
What is the remedy for CVE-2023-4075 in Chromium?
The remedy for CVE-2023-4075 in Chromium is to update to version 116.0.5845.180 or later.
Where can I find more information about CVE-2023-4075?
You can find more information about CVE-2023-4075 in the references provided: [Link 1](https://crbug.com/1457757), [Link 2](https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html), [Link 3](https://www.debian.org/security/2023/dsa-5467).