VDB

CVE-2018-6065

CVE-2018-6065 PUBLISHED KEV

Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS 89.55% · 99.6th percentile

Risk Scores

EPSS Score
89.55%
99.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSoxide-qt0, 1.12.6-0ubuntu1, 1.12.5-0ubuntu1
Ubuntu:16.04:LTSlibv8-3.140, 3.14.5.8-5ubuntu2
Ubuntu:16.04:LTSchromium-browser62.0.3202.94-0ubuntu0.16.04.1317, 63.0.3239.132-0ubuntu0.16.04.1, 63.0.3239.84-0ubuntu0.16.04.1
Ubuntu:14.04:LTSchromium-browser53.0.2785.143-0ubuntu0.14.04.1.1142, 52.0.2743.116-0ubuntu0.14.04.1.1134, 60.0.3112.78-0ubuntu0.14.04.1190
Ubuntu:18.04:LTSlibv8-3.143.14.5.8-11ubuntu1, 0

Exploit Intelligence

…and 19 more exploits

Timeline

  • Mar 7, 2018 CVE Published
  • May 4, 2018 PoC Published
  • Apr 14, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Jun 8, 2022 CISA KEV Added
  • Nov 8, 2023 EPSS Score
  • Dec 13, 2023 EPSS Score
  • Jun 9, 2024 EPSS Score
  • Jun 29, 2024 EPSS Score
  • Mar 19, 2025 EPSS Score
  • Mar 20, 2025 EPSS Score
  • Mar 28, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›