High severity8.8NVD Advisory· Published Feb 11, 2020· Updated Jun 17, 2026
CVE-2020-6381
CVE-2020-6381
Description
Integer overflow in JavaScript in Google Chrome on ChromeOS and Android prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- osv-coords7 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP3pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2012pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2012%20SP3
< 80.0.3987.87-lp151.2.63.1+ 6 more
- (no CPE)range: < 80.0.3987.87-lp151.2.63.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 80.0.3987.87-31.1
- (no CPE)range: < 80.0.3987.87-31.1
- (no CPE)range: < 80.0.3987.87-bp151.3.59.1
- (no CPE)range: < 20200101-25.1
- (no CPE)range: < 20200101-25.1
Patches
Vulnerability mechanics
References
9- crbug.com/1034394nvdExploitIssue TrackingPatchVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2020-02/msg00015.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2020-02/msg00025.htmlnvdMailing ListThird Party Advisory
- access.redhat.com/errata/RHSA-2020:0514nvdThird Party Advisory
- chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop.htmlnvdVendor Advisory
- security.gentoo.org/glsa/202003-08nvdThird Party Advisory
- www.debian.org/security/2020/dsa-4638nvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IOHSO6BUKC6I66J5PZOMAGFVJ66ZS57/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X3B5RWJQD5LA45MYLLR55KZJOJ5NVZGP/nvd
News mentions
0No linked articles in our index yet.