CVE-2023-5473: Use after free in Cast
Chromium: CVE-2023-5473 Use after free in Cast
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-5473?
CVE-2023-5473 is a vulnerability in Google Chrome and Microsoft Edge (Chromium-based) that allows a remote attacker to exploit heap corruption via a crafted HTML page.
What is the severity of CVE-2023-5473?
The severity of CVE-2023-5473 is medium (6.3).
How does CVE-2023-5473 affect Google Chrome?
CVE-2023-5473 affects Google Chrome versions prior to 118.0.5993.70.
How does CVE-2023-5473 affect Microsoft Edge?
CVE-2023-5473 affects Microsoft Edge versions prior to 118.0.2088.46.
How do I fix CVE-2023-5473?
To fix CVE-2023-5473, update to Google Chrome 118.0.5993.70 or later or Microsoft Edge 118.0.2088.46 or later.