QID 995519
Date Published: 2023-10-09
QID 995519: NodeJs (Npm) Security Update for electron (GHSA-qqvq-6xgj-jw8g)
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-qqvq-6xgj-jw8g for updates and patch information.
Vendor References
- GHSA-qqvq-6xgj-jw8g -
github.com/advisories/GHSA-qqvq-6xgj-jw8g
CVEs related to QID 995519
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-qqvq-6xgj-jw8g | electron |
|