Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade librewolfUpgrade thunderbirdUpgrade firefoxUpgrade firefox-esr | Jan 4, 2021 | Nov 3, 2020 |
| Amazon Linux Ami 2 | — | Upgrade thunderbirdUpgrade thunderbird-debuginfo | Dec 10, 2020 | Nov 3, 2020 |
| Apple Osx Webrtc | — | Upgrade macOS to the latest version | Feb 19, 2021 | Nov 3, 2020 |
| Apple Safari | — | Uninstall Apple Safari on WindowsUpgrade to Apple Safari version 14.0.2 | Dec 15, 2020 | Nov 3, 2020 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Nov 3, 2020 |
| Centos_linux | — | Upgrade thunderbirdUpgrade firefoxUpgrade thunderbird-debugsourceUpgrade thunderbird-debuginfoUpgrade chromium-browser-debuginfoUpgrade firefox-debuginfoUpgrade firefox-debugsourceUpgrade chromium-browser | Oct 14, 2020 | Oct 13, 2020 |
| Debian | — | Upgrade chromiumUpgrade firefox-esrUpgrade thunderbird | Oct 23, 2020 | Oct 23, 2020 |
| Freebsd | — | Upgrade chromium | Oct 7, 2020 | Oct 7, 2020 |
| Gentoo Linux | — | Upgrade www-client/firefox.Upgrade mail-client/thunderbird.Upgrade www-client/firefox-bin.Upgrade mail-client/thunderbird-bin.Upgrade www-client/chromium.Upgrade www-client/google-chrome.Upgrade dev-qt/qtwebengine. | Oct 19, 2020 | Oct 17, 2020 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Oct 8, 2020 | Oct 6, 2020 |
| Mfsa2020 45 | — | Upgrade to Mozilla Firefox version 82.0 | Oct 21, 2020 | Oct 20, 2020 |
| Mfsa2020 46 | — | Upgrade to Mozilla Firefox ESR version 78.4 | Oct 21, 2020 | Oct 20, 2020 |
| Microsoft Edge | — | Update Microsoft Edge to the latest version | Nov 17, 2021 | Nov 3, 2020 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 78.4 | Oct 22, 2020 | Oct 21, 2020 |
| Oracle Solaris | — | Upgrade web/browser/firefox to version 78.5.0-11.4.28.0.1.82.2 on Solaris 11.4Upgrade web/data/firefox-bookmarks to version 78.5.0-11.4.28.0.1.82.2 on Solaris 11.4Upgrade mail/thunderbird to version 78.5.0-11.4.28.0.1.82.2 on Solaris 11.4 | Jan 19, 2021 | Nov 3, 2020 |
| Oracle_linux | — | Upgrade thunderbirdUpgrade firefox | Oct 24, 2020 | Oct 6, 2020 |
| Redhat_linux | — | Upgrade thunderbirdUpgrade thunderbird-debugsourceUpgrade firefox-debuginfoUpgrade firefoxUpgrade firefox-debugsourceNo solution existsUpgrade thunderbird-debuginfo | Oct 14, 2020 | Oct 13, 2020 |
| Suse | — | Upgrade gnUpgrade mozillafirefox-translations-otherUpgrade mozillafirefox-develUpgrade chromiumUpgrade mozillathunderbird-translations-commonUpgrade mozillathunderbirdUpgrade mozilla-nspr-develUpgrade mozillafirefox-buildsymbolsUpgrade mozilla-nsprUpgrade mozillafirefox-branding-upstreamUpgrade chromedriverUpgrade mozillathunderbird-translations-otherUpgrade mozillafirefox-translations-commonUpgrade mozilla-nspr-32bitUpgrade mozillafirefox | Oct 23, 2020 | Sep 8, 2020 |
| Ubuntu | — | Upgrade thunderbirdUpgrade firefox | Oct 24, 2020 | Sep 8, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub