CVE-2023-6705: Use after free in WebRTC
Chromium: CVE-2023-6705 Use after free in WebRTC
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in WebRTC in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
— MITRE
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-6705?
CVE-2023-6705 is classified as a high severity vulnerability due to its potential for exploitation in affected browsers.
How do I fix CVE-2023-6705?
To fix CVE-2023-6705, update Google Chrome to version 120.0.6099.109 or later or update Microsoft Edge to a version beyond 120.0.2210.77.
Which products are affected by CVE-2023-6705?
CVE-2023-6705 affects Google Chrome versions prior to 120.0.6099.109 and Microsoft Edge versions prior to 120.0.2210.77.
What type of vulnerability is CVE-2023-6705?
CVE-2023-6705 is a 'use after free' vulnerability that can lead to arbitrary code execution.
What should I do if I cannot update to fix CVE-2023-6705?
If unable to update to fix CVE-2023-6705, consider temporarily using an alternative browser until a patch can be applied.