VDB
CVE-2023-6512
CVE-2023-6512
PUBLISHED
Mehrere Schwachstellen bestehen in verschiedenen Komponenten von Google Chrome und Microsoft Edge, wie z. B. Media Stream oder Side Panel Search, u. a. aufgrund eines Use-after-free und einer ungeeigneten Implementierung. Die Auswirkungen dieser Schwachstellen wurden bisher noch nicht im Detail beschrieben und veröffentlicht. Ein Angreifer kann diese Schwachstellen ausnutzen, um nicht näher spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.50% · 66.4th percentile
Risk Scores
EPSS Score
0.50%
66.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fedora | Fedora Linux | |
| Gentoo | Gentoo Linux | |
| Debian | Debian Linux |
Exploit Intelligence
- CIRCL seen: CVE-2023-6512 (circl-sighting)
- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop.html (circl)
- https://crbug.com/1457702 (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MMHY76AWPA46MAFXPWDGJX6FEGXZVR5Z/ (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RI3UHCTFH6KWAJGDZ2TOLT6VHKW53WCC/ (circl)
- https://www.debian.org/security/2023/dsa-5573 (circl)
- https://security.gentoo.org/glsa/202401-34 (circl)
Timeline
- Jan 21, 1970 Distribution Patch
- Jan 21, 1970 Security Advisory
- Jan 21, 1970 Security Advisory
- Dec 5, 2023 CVE Published
- Dec 6, 2023 EPSS Score
- Dec 24, 2023 PoC Published
- Jan 4, 2024 EPSS Score
- Feb 3, 2024 EPSS Score
- Mar 3, 2024 EPSS Score
- Apr 2, 2024 EPSS Score
- May 1, 2024 EPSS Score
- May 31, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-3066.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-3066 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-a0fcd69d86 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-d1b0df83e0 advisory
- https://lists.debian.org/debian-security-announce/2023/msg00269.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-3782f9a3bf advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-0bdf9bf395 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-a79d31df77 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-5418332424 advisory
- https://security.gentoo.org/glsa/202401-34 advisory
- https://security.gentoo.org/glsa/202402-14 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-b300e89045 advisory
- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-5d1b8507b8 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-d0b9bcb64f advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-a32ad3e643 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-259055935d advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-8d617060ef advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security advisory