Unrated severityNVD Advisory· Published Nov 25, 2019· Updated Aug 4, 2024
CVE-2019-5850
CVE-2019-5850
Description
Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
Affected products
8- osv-coords6 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP3pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1
< 76.0.3809.87-lp150.224.1+ 5 more
- (no CPE)range: < 76.0.3809.87-lp150.224.1
- (no CPE)range: < 76.0.3809.87-lp151.2.15.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 78.0.3904.87-10.1
- (no CPE)range: < 76.0.3809.87-bp150.220.1
- (no CPE)range: < 76.0.3809.87-bp151.3.3.3
Patches
Vulnerability mechanics
References
2- chromereleases.googleblog.com/2019/07/stable-channel-update-for-desktop_30.htmlmitrex_refsource_MISC
- crbug.com/977462mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.