Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17466

Опубликовано: 16 окт. 2018
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

Отчет

In general, this flaw be exploited through email in the Thunderbird product because scripting is disabled when reading mail, but are potentially risks in browser or browser-like contexts.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 8thunderbirdNot affected
Red Hat Enterprise Linux 6firefoxFixedRHSA-2018:383117.12.2018
Red Hat Enterprise Linux 6thunderbirdFixedRHSA-2019:015924.01.2019
Red Hat Enterprise Linux 6 Supplementarychromium-browserFixedRHSA-2018:300424.10.2018
Red Hat Enterprise Linux 7firefoxFixedRHSA-2018:383317.12.2018
Red Hat Enterprise Linux 7thunderbirdFixedRHSA-2019:016024.01.2019

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=1640102firefox: Memory corruption in Angle

EPSS

Процентиль: 78%
0.01106
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 7 лет назад

Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 8.8
nvd
около 7 лет назад

Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 8.8
debian
около 7 лет назад

Incorrect texture handling in Angle in Google Chrome prior to 70.0.353 ...

CVSS3: 8.8
github
больше 3 лет назад

Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 8.8
fstec
больше 7 лет назад

Уязвимость библиотеи angle веб-браузера Chrome, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 78%
0.01106
Низкий

8.8 High

CVSS3