Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 147.0.7727.55 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| chrome | cert_advisory | 90% | |
| microsoft | microsoft edge | cert_advisory | 90% |
Updated vendor to Microsoft and product to Edge, marked exploit as available and actively exploited, and set patch available to null.
Updated severity to CRITICAL, added affected version 146.0.7680.178, and provided a more detailed description.
Initial creation