CVE-2019-5842

Description

Use after free in Blink in Google Chrome prior to 75.0.3770.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.396

Associated Vulnerability

VulnerabilityOS Platform
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90)Windows
CVE-2019-5842 is fixed in Google Chrome (x64) (75.0.3770.90)Windows
Vulnerabilities CVE-2019-5842 are fixed in Google Chrome for Mac 75.0.3770.90Mac
chromium security update(DSA-4500-1) chromium_76.0.3809.100-1~deb10u1_amd64.debLinux
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90) (For Debian)Linux
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90) (For Centos)Linux
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90) (For RedHat)Linux
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90) (For Suse)Linux
CVE-2019-5842 is fixed in Google Chrome (75.0.3770.90) (For Ubuntu)Linux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-310076Google Chrome (75.0.3770.90)
PATCH-310078Google Chrome (x64) (75.0.3770.90)
PATCH-611995Google Chrome for Mac (140.0.7339.132 , 140.0.7339.133)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234