### [CVE-2018-6120](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6120) ![](https://img.shields.io/static/v1?label=Product&message=Chrome&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3C%2066.0.3359.170%20%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Integer%20overflow&color=brighgreen) ### Description An integer overflow that could lead to an attacker-controlled heap out-of-bounds write in PDFium in Google Chrome prior to 66.0.3359.170 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. ### POC #### Reference No PoCs from references. #### Github - https://github.com/0xCyberY/CVE-T4PDF - https://github.com/ARPSyndicate/cvemon