|
|||
Rule General Information |
---|
Release Date: | 2021-05-13 | |
Rule Name: | Google Chrome WebAudio OfflineAudioContext Use After Free Vulnerability (CVE-2019-13720) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | |
Impact: | A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code. | |
Affected OS: | Windows, Linux, Others | |
Reference: | http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00022.html https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_31.html https://crbug.com/1019226 https://security.gentoo.org/glsa/202004-04 |
|
Solutions |
---|
The vendor has released upgrade patches to fix vulnerabilities, please visit: https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_31.html |