CVE-2019-5796

HIGH

Google Chrome < 73.0.3683.75 - Race Condition

Title source: rule
STIX 2.1

Description

Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Google Security Research · textdosmultiple
https://www.exploit-db.com/exploits/46566

References (3)

Core 3
Core References
Issue Tracking x_refsource_misc
https://crbug.com/918861

Scores

CVSS v3 7.5
EPSS 0.0699
EPSS Percentile 91.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-362 CWE-787
Status published
Products (5)
google/chrome < 73.0.3683.75
opensuse/backports_sle 15.0
opensuse/leap 15.0
opensuse/leap 15.1
opensuse/leap 42.3
Published May 23, 2019
Tracked Since Feb 18, 2026