RULE(RULE ID:333553)

Rule General Information
Release Date: 2021-05-13
Rule Name: Google Chrome WebAudio OfflineAudioContext Use After Free Vulnerability (CVE-2019-13720)
Severity:
CVE ID:
Rule Protection Details
Description: Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Windows, Linux, Others
Reference: http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00022.html
https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_31.html
https://crbug.com/1019226
https://security.gentoo.org/glsa/202004-04
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_31.html