⚠ Actively exploited
Added to CISA KEV on 2023-04-21. Federal agencies required to patch by 2023-05-12. Required action: Apply updates per vendor instructions..

CVE-2023-2136Integer Overflow or Wraparound in External Skia

Severity
9.6CRITICALNVD
EPSS
0.6%
top 31.29%
CISA KEV
KEV
Added 2023-04-21
Due 2023-05-12
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedApr 19
KEV addedApr 21
KEV dueMay 12
Latest updateJul 1
CISA Required Action: Apply updates per vendor instructions.

Description

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:HExploitability: 2.8 | Impact: 6.0

Affected Packages4 packages

CVEListV5google/chrome112.0.5615.137112.0.5615.137
NVDgoogle/chrome< 112.0.5615.137
Androidplatform/external_skia13-next:013-next:2023-07-01+1
Debianchromium/chromium< 112.0.5615.138-1~deb11u1+3

Also affects: Debian Linux 11.0, Fedora 36, 37, 38

🔴Vulnerability Details

6
OSV
CVE-2023-2136: In multiple functions of SkSLFunctionDefinition2023-07-01
GHSA
GHSA-63j8-q3xx-g3c2: Integer overflow in Skia in Google Chrome prior to 1122023-04-19
OSV
CVE-2023-2136: Integer overflow in Skia in Google Chrome prior to 1122023-04-19
CVEList
CVE-2023-2136: Integer overflow in Skia in Google Chrome prior to 1122023-04-19
VulnCheck
Google Chrome Skia Integer Overflow Vulnerability2023

📋Vendor Advisories

5
Android
CVE-2023-2136: Android Security Bulletin 2023-07-01 CVE: CVE-2023-2136 Severity: HIGH Type: RCE Affected AOSP versions: 13 References: A-2781130332023-07-01
Chrome
Long Term Support Channel Update for ChromeOS: CVE-2023-21362023-04-27
CISA
Google Chrome Skia Integer Overflow Vulnerability2023-04-21
Microsoft
Chromium: CVE-2023-2136 Integer overflow in Skia2023-04-11
Debian
CVE-2023-2136: chromium - Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remo...2023
CVE-2023-2136 — Integer Overflow or Wraparound | cvebase