CVE-2017-5070 PUBLISHED KEV

Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

EPSS 71.10% · 98.7th percentile

Risk Scores

EPSS Score
71.10%
98.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlibv8-3.143.14.5.8-5ubuntu2, 0
Ubuntu:16.04:LTSoxide-qt1.21.5-0ubuntu0.16.04.1, 1.20.4-0ubuntu0.16.04.1, 1.19.4-0ubuntu0.16.04.1
Ubuntu:14.04:LTSchromium-browser50.0.2661.102-0ubuntu0.14.04.1.1117, 51.0.2704.79-0ubuntu0.14.04.1.1121, 52.0.2743.116-0ubuntu0.14.04.1.1134
Ubuntu:16.04:LTSchromium-browser58.0.3029.110-0ubuntu0.16.04.1281, 58.0.3029.96-0ubuntu0.16.04.1279, 58.0.3029.81-0ubuntu0.16.04.1277
Ubuntu:18.04:LTSlibv8-3.140, 3.14.5.8-11ubuntu1

Timeline

References

Open in Interactive Console →