CVE-2018-18342

HIGH

Google Chrome < 71.0.3578.80 - Out-of-bounds Write via V8 Object Deserialization

Title source: llm
STIX 2.1

Description

Execution of user supplied Javascript during object deserialization can update object length leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

References (6)

Core 6
Core References
Issue Tracking x_refsource_misc
https://crbug.com/906313
Vendor Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2018:3803
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2018/dsa-4352
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106084
Third Party Advisory vendor-advisory x_refsource_gentoo
https://security.gentoo.org/glsa/201908-18

Scores

CVSS v3 8.8
EPSS 0.0189
EPSS Percentile 83.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (5)
debian/debian_linux 9.0
google/chrome < 71.0.3578.80
redhat/enterprise_linux_desktop 6.0
redhat/enterprise_linux_server 6.0
redhat/enterprise_linux_workstation 6.0
Published Dec 11, 2018
Tracked Since Feb 18, 2026