High severity8.8NVD Advisory· Published Feb 11, 2020· Updated Jun 17, 2026
CVE-2020-6387
CVE-2020-6387
Description
Out of bounds write in WebRTC in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted video stream.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- osv-coords7 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP3pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2012pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2012%20SP3
< 80.0.3987.87-lp151.2.63.1+ 6 more
- (no CPE)range: < 80.0.3987.87-lp151.2.63.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 80.0.3987.87-31.1
- (no CPE)range: < 80.0.3987.87-31.1
- (no CPE)range: < 80.0.3987.87-bp151.3.59.1
- (no CPE)range: < 20200101-25.1
- (no CPE)range: < 20200101-25.1
Patches
Vulnerability mechanics
References
9- chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop.htmlnvdVendor Advisory
- crbug.com/1042535nvdPermissions Required
- lists.opensuse.org/opensuse-security-announce/2020-02/msg00015.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2020-02/msg00025.htmlnvd
- access.redhat.com/errata/RHSA-2020:0514nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IOHSO6BUKC6I66J5PZOMAGFVJ66ZS57/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X3B5RWJQD5LA45MYLLR55KZJOJ5NVZGP/nvd
- security.gentoo.org/glsa/202003-08nvd
- www.debian.org/security/2020/dsa-4638nvd
News mentions
0No linked articles in our index yet.