CVE-2018-6153
published 2019-01-09CVE-2018-6153: A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform an out of bounds…
PriorityP342high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
1.59%
72.9th percentile
A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| chrome | < 68.0.3440.75 | 68.0.3440.75 | |
| chrome | >= unspecified < 68.0.3440.75 | 68.0.3440.75 | |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jv2q-vg54-vqw5: A precision error in Skia in Google Chrome prior to 68
ghsa_unreviewed·2022-05-14
CVE-2018-6153 [HIGH] CWE-787 GHSA-jv2q-vg54-vqw5: A precision error in Skia in Google Chrome prior to 68
A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page.
OSV
CVE-2018-6153: A precision error in Skia in Google Chrome prior to 68
osv·2019-01-09·CVSS 8.8
CVE-2018-6153 [HIGH] CVE-2018-6153: A precision error in Skia in Google Chrome prior to 68
A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page.
Red Hat
chromium-browser: Stack buffer overflow in Skia
vendor_redhat·2018-07-24·CVSS 8.8
CVE-2018-6153 [HIGH] chromium-browser: Stack buffer overflow in Skia
chromium-browser: Stack buffer overflow in Skia
A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page.
No detection rules found.
No public exploits indexed.
Bugzilla
stack buffer overflow in SkAlphaRuns::Break
bugzilla·2018-10-12·CVSS 8.8
CVE-2018-6153 [HIGH] stack buffer overflow in SkAlphaRuns::Break
stack buffer overflow in SkAlphaRuns::Break
Looks like we may need the patch from https://bugs.chromium.org/p/chromium/issues/detail?id=850350 to fix a static buffer overflow found by fuzzing in Chrome. The fix was shipped with Chrome 68 and assigned CVE-2018-6153. It was demonstrated to affect m67; no regressor was identified so it might affect the m66 branch we're using.
There were two patches taken (plus a test patch). Only the second one appears to have been merged to the m68 branch
https://skia.googlesource.com/skia/+/1e259cda4fb7f12e98dd611bd651f40ebef2d14a
https://skia.googlesource.com/skia/+/73be50da2a1fe8944f2623a511fda1957eed708a
Discussion:
A stack buffer UNDERflow in this function was reported as https://bugs.chromium.org/p/chromium/issues/detail?id=862004 but this was det
Bugzilla
CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-
bugzilla·2018-07-25·CVSS 6.5
CVE-2018-4117 [MEDIUM] CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-
CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-2018-6163 ... chromium: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the releva
Bugzilla
CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-
bugzilla·2018-07-25·CVSS 6.5
CVE-2018-4117 [MEDIUM] CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-
CVE-2018-4117 CVE-2018-6044 CVE-2018-6150 CVE-2018-6151 CVE-2018-6152 CVE-2018-6153 CVE-2018-6154 CVE-2018-6155 CVE-2018-6156 CVE-2018-6157 CVE-2018-6158 CVE-2018-6159 CVE-2018-6161 CVE-2018-6162 CVE-2018-6163 ... chromium: various flaws [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-l
Bugzilla
CVE-2018-6153 chromium-browser: Stack buffer overflow in Skia
bugzilla·2018-07-25·CVSS 8.8
CVE-2018-6153 [HIGH] CVE-2018-6153 chromium-browser: Stack buffer overflow in Skia
CVE-2018-6153 chromium-browser: Stack buffer overflow in Skia
A stack buffer overflow flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=850350
External References:
https://chromereleases.googleblog.com/2018/07/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1608211]
Affects: fedora-all [bug 1608210]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:2282 https://access.redhat.com/errata/RHSA-2018:2282
http://www.securityfocus.com/bid/104887https://access.redhat.com/errata/RHSA-2018:2282https://chromereleases.googleblog.com/2018/07/stable-channel-update-for-desktop.htmlhttps://crbug.com/850350https://security.gentoo.org/glsa/201808-01https://www.debian.org/security/2018/dsa-4256http://www.securityfocus.com/bid/104887https://access.redhat.com/errata/RHSA-2018:2282https://chromereleases.googleblog.com/2018/07/stable-channel-update-for-desktop.htmlhttps://crbug.com/850350https://security.gentoo.org/glsa/201808-01https://www.debian.org/security/2018/dsa-4256
2019-01-09
Published