[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Heap buffer overflow vulnerability in WebP in Google Chrome and Microsoft Edge via unspecified vectors - CVE-2023-4863

ID: oval:org.secpod.oval:def:93027Date: (C)2023-09-13   (M)2024-03-27
Class: VULNERABILITYFamily: windows




The host is installed with Google Chrome before 117.0.5938.62, Microsoft Edge before 117.0.2045.31, Mozilla Firefox before 117.0.1, Mozilla Firefox ESR 102.15.1 or 115.0 before 115.2.1, Mozilla Thunderbird 102.15.1 or 115.0 before 115.2.1, Opera Browser before 102.0.4880.51, Brave Browser before 1.57.64, VP9 Video Extension before 1.0.61591.0, WebP Image Extension before 1.0.62681.0, Skype before 8.105.0.208, or Microsoft Teams before 1.6.00.26474 or LibreOffice 7.6.x before 7.6.2 or 7.5.x before 7.5.7 and is prone to a heap buffer overflow vulnerability. A flaw is present in the application, which fails to handle unspecified vectors. Successful exploitation allows attackers to have unspecified impact.

Platform:
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8.1
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server
Microsoft Windows 11
Microsoft Windows Server 2022
Product:
Google Chrome
Google Chrome Enterprise
Microsoft Edge (Chromium-based)
Microsoft Edge Business (Chromium-based)
Mozilla Firefox
Mozilla Firefox ESR
Mozilla Thunderbird
Opera Browser
Brave Browser
Microsoft Windows Codecs WebP Image Extension
Skype
Microsoft Teams
LibreOffice
Reference:
CVE-2023-4863
CVE    1
CVE-2023-4863
CPE    12
cpe:/a:mozilla:thunderbird:::x64
cpe:/a:mozilla:thunderbird:::x86
cpe:/a:google:chrome:::x64
cpe:/a:google:chrome:::x86
...

© SecPod Technologies