Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 147.0.7727.55 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| apple | macos | cve_cpe | 95% |
| chrome | cert_advisory | 90% | |
| linux | linux_kernel | cve_cpe | 95% |
| microsoft | microsoft edge | cert_advisory | 90% |
| microsoft | windows | cve_cpe | 95% |
Updated vendor to Microsoft, product to Edge, severity to HIGH, and marked exploit as available and actively exploited.
Updated severity to CRITICAL, added affected version 146.0.7680.178, and corrected exploit availability.
Initial creation