Comment on UPDATE YOUR BROWSERS IMMEDIATELY. RCE VULNERABILITY DISCOVERED
Th3D3k0y@lemmy.world 1 year agoCurrent Description
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
cheese_greater@lemmy.world 1 year ago
By crafter webpage, does it mean it refers to anything like phishing or something a more savvy user wouldn’t likely “fall for” or does that actually not matter (zero-day or whatever)
Feathercrown@lemmy.world 1 year ago
Looks like it can do RCE without use interaction other than visiting the page-- not good!