CVE-2023-5217

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Sep 28, 2023
Updated: Dec 20, 2024
CWE ID 787

Summary

CVE-2023-5217 is a heap buffer overflow vulnerability affecting Google Chrome versions prior to 117.0.5938.132 and libvpx 1.13.1. The issue lies in the vp8 encoding component of libvpx. A remote attacker can potentially exploit this vulnerability by crafting a malicious HTML page to cause heap corruption, resulting in a security risk rated as high by Chromium.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share