CVE-2018-18356Integer Overflow or Wraparound in Google Chrome

Severity
8.8HIGHNVD
OSV5.5
EPSS
2.6%
top 14.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 11
Latest updateMay 13

Description

An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages9 packages

CVEListV5google/chromeunspecified71.0.3578.80
NVDgoogle/chrome< 71.0.3578.80
Debianchromium/chromium< 71.0.3578.80-1+3
Debianmozilla/thunderbird< 1:60.5.1-1+3
Ubuntumozilla/thunderbird< 1:60.5.1+build2-0ubuntu0.14.04.1+2

Also affects: Debian Linux 8.0, 9.0, Ubuntu Linux 14.04, 16.04, 18.04, 18.10, Enterprise Linux 7.6

🔴Vulnerability Details

4
GHSA
GHSA-x2cw-grr7-xm95: An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 712022-05-13
OSV
thunderbird vulnerabilities2019-02-26
CVEList
CVE-2018-18356: An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 712018-12-11
OSV
CVE-2018-18356: An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 712018-12-11

📋Vendor Advisories

4
Ubuntu
Firefox vulnerabilities2019-02-26
Ubuntu
Thunderbird vulnerabilities2019-02-26
Red Hat
mozilla: Use after free in Skia2018-12-04
Debian
CVE-2018-18356: chromium - An integer overflow in path handling lead to a use after free in Skia in Google ...2018

💬Community

3
Bugzilla
CVE-2018-18356 firefox: chromium-browser, mozilla: Use after free in Skia [fedora-all]2019-02-13
Bugzilla
CVE-2018-18356 thunderbird: chromium-browser, mozilla: Use after free in Skia [fedora-all]2019-02-13
Bugzilla
CVE-2018-18356 chromium-browser, mozilla: Use after free in Skia2018-12-05
CVE-2018-18356 — Integer Overflow or Wraparound | cvebase