CVE-2023-4076: Use after free in WebRTC
Chromium: CVE-2023-4076 Use after free in WebRTC
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Use after free in WebRTC in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC session. (Chromium security severity: High)
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-4076?
CVE-2023-4076 has been classified with a high severity due to a use-after-free vulnerability.
How do I fix CVE-2023-4076?
To resolve CVE-2023-4076, update your Chromium-based browser to the latest version as recommended.
Which versions are affected by CVE-2023-4076?
CVE-2023-4076 affects Google Chrome versions prior to 115.0.5790.170 and various versions of Microsoft Edge and Chromium.
Is Microsoft Edge vulnerable to CVE-2023-4076?
Yes, Microsoft Edge (Chromium-based) is vulnerable if it is running a version prior to the fixed release.
What platforms are impacted by CVE-2023-4076?
CVE-2023-4076 impacts any platform or operating system running affected versions of Google Chrome, Microsoft Edge, or Debian Chromium.