CVE-2023-5217
Google Chromium libvpx Heap Buffer Overflow Vulnerability
Does this matter?
Known to be exploited in the wild (CISA KEV, CISA remediation deadline 23 October 2023). Treat as an emergency change: patch or isolate now, then hunt for prior compromise.
Description
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 49.01% probability · 99th percentile
- CISA KEV
- Listed 2 October 2023 · due 23 October 2023
- Weakness
- CWE-787
- Affected
- webmproject/libvpx · microsoft/edge · microsoft/edge chromium · mozilla/firefox · mozilla/thunderbird · fedoraproject/fedora · debian/debian linux · apple/ipados · apple/iphone os · google/chrome · redhat/enterprise linux
- Source
- chrome-cve-admin@google.com
CISA notes
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable. https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_27.html; https://nvd.nist.gov/vuln/detail/CVE-2023-5217
References
- http://seclists.org/fulldisclosure/2023/Oct/12Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2023/Oct/16Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/28/5Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/28/6Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/11Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/12Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/14Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/7Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/29/9Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/30/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/30/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/30/3Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/30/4Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/30/5Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/01/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/01/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/01/5Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/02/6Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/11Mailing List, Third Party Advisory
- https://arstechnica.com/security/2023/09/new-0-day-in-chrome-and-firefox-is-likely-to-plague-other-software/Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2241191Issue Tracking, Third Party Advisory
- https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_27.htmlVendor Advisory
- https://crbug.com/1486441Exploit, Issue Tracking
- https://github.com/webmproject/libvpx/commit/3fbd1dca6a4d2dad332a2110d646e4ffef36d590Patch
- https://github.com/webmproject/libvpx/commit/af6dedd715f4307669366944cca6e0417b290282Patch
- https://github.com/webmproject/libvpx/releases/tag/v1.13.1Release Notes
- https://github.com/webmproject/libvpx/tagsProduct
- https://lists.debian.org/debian-lts-announce/2023/09/msg00038.htmlMailing List
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.