Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.
From VID-E457978B-5484-11E8-9B85-54EE754AF08E:
Google Chrome Releases reports:
4 security fixes in this release:
[835887] Critical: Chain leading to sandbox escape.
Reported by Anonymous on 2018-04-23
[836858] High CVE-2018-6121: Privilege Escalation in extensions
[836141] High CVE-2018-6122: Type confusion in V8
[833721] High CVE-2018-6120: Heap buffer overflow in PDFium.
Reported by Zhou Aiting(@zhouat1) of Qihoo 360 Vulcan Team on 2018-04-17
[841841] Various fixes from internal audits, fuzzing and other initiatives
With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.
– Scott Cheney, Manager of Information Security, Sierra View Medical Center