CVE-2023-4863
high · 8.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Added 2023-09-13Remediation due 2023-10-04
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
8.8
CVSS
100.0%
EPSS (exploit prob.)
100th
EPSS percentile
2023-09-12
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| chrome | < 116.0.5845.187 | |
| fedoraproject | fedora | 37 |
| fedoraproject | fedora | 38 |
| fedoraproject | fedora | 39 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
| debian | debian_linux | 12.0 |
| mozilla | firefox | < 102.15.1 |
| mozilla | firefox | < 117.0.1 |
| mozilla | firefox | >= 115.1.0, < 115.2.1 |
| mozilla | thunderbird | < 102.15.1 |
| mozilla | thunderbird | >= 115.0, < 115.2.2 |
| microsoft | edge_chromium | < 116.0.1938.81 |
| microsoft | teams | < 1.6.00.26463 |
| microsoft | teams | < 1.6.00.26474 |
| microsoft | webp_image_extension | < 1.0.62681.0 |
| webmproject | libwebp | < 1.3.2 |
| netapp | active_iq_unified_manager | all versions |
| bentley | seequent_leapfrog | < 2023.2 |
| bandisoft | honeyview | < 5.51 |
Check a specific version with /api/v1/cve/match.
References
- http://www.openwall.com/lists/oss-security/2023/09/21/4
- http://www.openwall.com/lists/oss-security/2023/09/22/1
- http://www.openwall.com/lists/oss-security/2023/09/22/3
- http://www.openwall.com/lists/oss-security/2023/09/22/4
- http://www.openwall.com/lists/oss-security/2023/09/22/5
- http://www.openwall.com/lists/oss-security/2023/09/22/6
- http://www.openwall.com/lists/oss-security/2023/09/22/7
- http://www.openwall.com/lists/oss-security/2023/09/22/8
- http://www.openwall.com/lists/oss-security/2023/09/26/1
- http://www.openwall.com/lists/oss-security/2023/09/26/7
- http://www.openwall.com/lists/oss-security/2023/09/28/1
- http://www.openwall.com/lists/oss-security/2023/09/28/2
- http://www.openwall.com/lists/oss-security/2023/09/28/4
- https://adamcaudill.com/2023/09/14/whose-cve-is-it-anyway/
- https://blog.isosceles.com/the-webp-0day/
- https://bugzilla.suse.com/show_bug.cgi?id=1215231
- https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_11.html
- https://crbug.com/1479274
- https://en.bandisoft.com/honeyview/history/
- https://github.com/webmproject/libwebp/commit/902bc9190331343b2017211debcec8d2ab87e17a
- https://github.com/webmproject/libwebp/releases/tag/v1.3.2
- https://lists.debian.org/debian-lts-announce/2023/09/msg00015.html
- https://lists.debian.org/debian-lts-announce/2023/09/msg00016.html
- https://lists.debian.org/debian-lts-announce/2023/09/msg00017.html
- https://lists.fedoraproject.org/archives/list/[email protected]/message/6T655QF7CQ3DYAMPFV7IECQYGDEUIVVT/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2023-4863