cve/2023/CVE-2023-1220.md
2024-06-18 02:51:15 +02:00

18 lines
839 B
Markdown

### [CVE-2023-1220](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1220)
![](https://img.shields.io/static/v1?label=Product&message=Chrome&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=111.0.5563.64%3C%20111.0.5563.64%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Heap%20buffer%20overflow&color=brighgreen)
### Description
Heap buffer overflow in UMA in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
### POC
#### Reference
- http://packetstormsecurity.com/files/171796/Chrome-base-SampleVectorBase-MoveSingleSampleToCounts-Heap-Buffer-Overflow.html
#### Github
- https://github.com/ARPSyndicate/cvemon