ChromeOS Multiple Vulnerabilities
RISK: Extremely High Risk
TYPE: Operating Systems - Others OS
Multiple vulnerabilities were identified in ChromeOS. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, remote code execution and sensitive information disclosure on the targeted system.
Note:
CVE-2023-5217: Heap buffer overflow in vp8 encoding in libvpx. Google is aware that an exploit for CVE-2023-5217 exists in the wild.
Impact
- Remote Code Execution
- Elevation of Privilege
- Denial of Service
- Information Disclosure
System / Technologies affected
- Version prior to 114.0.5735.337 (Platform Version: 15437.74.0)
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor. For detail, please refer to the link below:
Vulnerability Identifier
- CVE-2023-2163
- CVE-2023-3777
- CVE-2023-4015
- CVE-2023-4208
- CVE-2023-4366
- CVE-2023-4622
- CVE-2023-4761
- CVE-2023-5187
- CVE-2023-5217
- CVE-2023-20593
- CVE-2023-40283
Source
Related Link
Related Tags
Share with