Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Metrics
Affected Vendors & Products
References
History
Tue, 21 Oct 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 03 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple ipados
|
|
| CPEs | cpe:2.3:o:apple:ipad_os:16.7:*:*:*:*:*:*:* |
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:16.7:*:*:*:*:*:*:* |
| Vendors & Products |
Apple ipad Os
|
Apple ipados
|
Mon, 03 Feb 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Fri, 20 Dec 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_focus:*:*:*:*:*:android:*:* |
cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:* cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* |
| Vendors & Products |
Mozilla firefox Esr
Mozilla firefox Focus |
Wed, 14 Aug 2024 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published: 2023-09-28T15:23:18.340Z
Updated: 2025-10-21T23:05:36.191Z
Reserved: 2023-09-27T01:52:05.679Z
Link: CVE-2023-5217
Updated: 2024-08-02T07:52:08.351Z
Status : Analyzed
Published: 2023-09-28T16:15:10.980
Modified: 2025-10-24T14:07:24.923
Link: CVE-2023-5217