VYPR
Moderate severityCISA KEVNVD Advisory· Published Nov 3, 2020· Updated Oct 21, 2025

CVE-2020-15999

CVE-2020-15999

Description

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
CefSharp.CommonNuGet
< 85.3.13085.3.130
CefSharp.WpfNuGet
< 85.3.13085.3.130
CefSharp.WinFormsNuGet
< 85.3.13085.3.130
CefSharp.Wpf.HwndHostNuGet
< 85.3.13085.3.130

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

20

News mentions

0

No linked articles in our index yet.