Out of bounds read in Skia in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
CVSS Details
- CVSS 3.1 Base Score: 8.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Nov 25, 2019 |
| Debian | — | Upgrade chromium | Oct 23, 2019 | Oct 23, 2019 |
| Freebsd | — | Upgrade seamonkeyUpgrade waterfoxUpgrade linux-seamonkeyUpgrade thunderbirdUpgrade firefoxUpgrade linux-firefoxUpgrade libxulUpgrade firefox-esrUpgrade linux-thunderbird | Sep 4, 2019 | Sep 3, 2019 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Dec 4, 2019 | Jun 4, 2019 |
| Mfsa2019 25 | — | Upgrade to Mozilla Firefox version 69.0Upgrade to the latest version of Mozilla Firefox | Sep 4, 2019 | Sep 3, 2019 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Nov 25, 2019 |
| Ubuntu | — | Upgrade firefox | Sep 5, 2019 | Sep 3, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub