CVE-2025-0998Out-of-bounds Read in Mattermost Mattermost-plugin-zoom

Severity
8.8HIGH
No vector
EPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 21
Latest updateFeb 16

Description

Stable Channel Update for ChromeOS / ChromeOS Flex - M133 CVE-2025-0998

Affected Packages10 packages

🔴Vulnerability Details

2
GHSA
Mattermost Plugin Zoom fail to validate user identity and post ownership in the {{/api/v1/askPMI}} endpoint2026-02-16
GHSA
GHSA-4v9x-qxmv-4h58: Out of bounds memory access in V8 in Google Chrome prior to 1332025-02-15

📋Vendor Advisories

4
Palo Alto
PAN-SA-2025-0007 Chromium: Monthly Vulnerability Update (March 2025)2025-03-12
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex - M133: CVE-2025-09982025-02-21
Microsoft
Chromium: CVE -2025-0998 Out of bounds memory access in V82025-02-11
Microsoft
An integer overflow flaw was found in the Linux kernel’s virtio device driver code in the way a user triggers the vhost_vdpa_config_validate function. This flaw allows a local user to crash or potenti2022-03-08