vulnerability
FreeBSD: VID-E457978B-5484-11E8-9B85-54EE754AF08E (CVE-2018-6121): chromium -- multiple vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Apr 14, 2018 | May 14, 2018 | Jul 4, 2019 |
Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.
From VID-E457978B-5484-11E8-9B85-54EE754AF08E:
Google Chrome Releases reports:
4 security fixes in this release:
[835887] Critical: Chain leading to sandbox escape.
Reported by Anonymous on 2018-04-23
[836858] High CVE-2018-6121: Privilege Escalation in extensions
[836141] High CVE-2018-6122: Type confusion in V8
[833721] High CVE-2018-6120: Heap buffer overflow in PDFium.
Reported by Zhou Aiting(@zhouat1) of Qihoo 360 Vulcan Team on 2018-04-17
[841841] Various fixes from internal audits, fuzzing and other initiatives
Solution
References
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.