Unrated severityNVD Advisory· Published Feb 7, 2023· Updated Aug 2, 2024
CVE-2023-0703
CVE-2023-0703
Description
Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interactions. (Chromium security severity: Medium)
Affected products
6- osv-coords5 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.4%20NonFreepkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.5%20NonFreepkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP4
< 110.0.5481.77-bp154.2.67.1+ 4 more
- (no CPE)range: < 110.0.5481.77-bp154.2.67.1
- (no CPE)range: < 110.0.5481.77-1.1
- (no CPE)range: < 96.0.4693.20-lp154.2.41.1
- (no CPE)range: < 99.0.4788.13-lp155.3.6.1
- (no CPE)range: < 110.0.5481.77-bp154.2.67.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.