ChromeOS Multiple Vulnerabilities
RISK: Extremely High Risk
TYPE: Operating Systems - Others OS
Multiple vulnerabilities were identified in ChromeOS. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, remote code execution and security restriction bypass on the targeted system.
Note:
For CVE-2023-4863, heap buffer overflow in WebP may lead to arbitrary code execution. Google is aware that an exploit for CVE-2023-4863 exists in the wild.
Impact
- Remote Code Execution
- Elevation of Privilege
- Denial of Service
- Security Restriction Bypass
System / Technologies affected
- Version prior to 117.0.5938.115 (Platform Version: 15572.50.0)
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor. For detail, please refer to the link below:
Vulnerability Identifier
- CVE-2023-4208
- CVE-2023-4622
- CVE-2023-4863
- CVE-2023-4900
- CVE-2023-4901
- CVE-2023-4902
- CVE-2023-4903
- CVE-2023-4904
- CVE-2023-4905
- CVE-2023-4906
- CVE-2023-4907
- CVE-2023-4908
- CVE-2023-4909
Source
Related Link
Related Tags
Share with