First published: Thu Jul 20 2023(Updated: )
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2023">Google Chrome Releases</a> for more information.</p>
Credit: chrome-cve-admin@google.com chrome-cve-admin@google.com Weipeng Jiang @Krace VRI
Affected Software | Affected Version | How to fix |
---|---|---|
debian/chromium | <=90.0.4430.212-1~deb10u1 | 116.0.5845.180-1~deb11u1 118.0.5993.117-1~deb11u1 116.0.5845.180-1~deb12u1 118.0.5993.117-1~deb12u1 118.0.5993.117-1 |
Google Chrome | <116.0.5845.96 | |
Debian Debian Linux | =11.0 | |
Debian Debian Linux | =12.0 | |
Fedoraproject Fedora | =38 | |
Microsoft Edge | <116.0.1938.54 | |
Microsoft Edge (Chromium-based) | ||
Google Chrome | <116.0.5845.96 | 116.0.5845.96 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-4358 is a vulnerability in Chromium that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page.
The severity of CVE-2023-4358 is Medium (Chromium security severity: Medium).
CVE-2023-4358 affects Microsoft Edge versions up to exclusive 116.0.1938.54.
CVE-2023-4358 affects Google Chrome versions up to exclusive 116.0.5845.96.
CVE-2023-4358 affects Debian Linux version 11.0 and 12.0.
CVE-2023-4358 affects Fedora version 38.
Update Microsoft Edge to version 116.0.1938.54 or later.
Update Google Chrome to version 116.0.5845.96 or later.
Upgrade Debian Linux to version 11.0 or 12.0.
Upgrade Fedora to version 38.
The CWE (Common Weakness Enumeration) of CVE-2023-4358 is 416.