CVE-2020-15999

Description from NVD

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Information Acquisition Date:2021-04-27T10:54Z
CVSS 2.0: 4.3 MEDIUM CVSS 3.x: 6.5 MEDIUM

▼ CVSS3 Vec CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

▼ CVSS2 Vec AV:N/AC:M/Au:N/C:N/I:N/A:P

NVD References

 https://chromereleases.googleblog.com/2020/10/stable-channel-update-for-desktop_20.html
     source:MISC
     tags:Third Party Advisory    
 https://crbug.com/1139963
     source:MISC
     tags:Exploit    Third Party Advisory    
 openSUSE-SU-2020:1829
     source:SUSE
     tags:Mailing List    Third Party Advisory    
 FEDORA-2020-6b35849edd
     source:FEDORA
     tags:Mailing List    Third Party Advisory    
 GLSA-202011-12
     source:GENTOO
     tags:Third Party Advisory    
 20201118 TCMalloc viewer/dumper - TCMalloc Inspector Tool
     source:FULLDISC
     tags:Mailing List    Not Applicable    Third Party Advisory    
 GLSA-202012-04
     source:GENTOO
     tags:Third Party Advisory    
 DSA-4824
     source:DEBIAN
     tags:Third Party Advisory    
 https://googleprojectzero.blogspot.com/p/rca-cve-2020-15999.html
     source:MISC
     tags:Exploit    Third Party Advisory    

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag:



List of frequently cited URLs

URLNum of Times Referred to
https://alerts.vulmon.com/l/uZ264
http://twinybots.ch26
https://lists.astaro.com/ASGV9-IPS-rules.html20
https://bugs.chromium.org/p/project-zero/issues/detail?id=210412
https://chromereleases.googleblog.com/2020/10/stable-channe...5
https://bit.ly/3dOAOrC4
https://ift.tt/3oFz8WA3
https://github.com/marcinguy/CVE-2020-159993
https://starlabs.sg/blog/2021/01/chrome-1-day-hunting-uncov...3
https://twitter.com/piyokango/status/13190317932158935043
http://seclists.org/fulldisclosure/2020/Oct/333
https://www.zdnet.com/article/google-releases-chrome-securi...3
https://www.tenable.com/blog/cve-2020-15999-cve-2020-17087-...3
https://blog.tetrane.com/2021/CVE-2020-15999-Chrome.html3
https://thehackernews.com/2020/10/chrome-zeroday-attacks.html3
https://msrc.microsoft.com/update-guide/en-US/vulnerability...3
https://securityaffairs.co/wordpress/109823/hacking/chrome-...3
https://savannah.nongnu.org/bugs/?593083
https://cybersecuritynews.com/new-chrome-0-day-bug/3
https://noticiasseguridad.com/vulnerabilidades/cve-2020-400...3
https://ipssignatures.appspot.com/?cve=CVE-2020-159993

Information from Twitter

User URL Info Source Date
No Data

List of frequently cited URLs

URLNum of Times Referred to
alerts.vulmon.com264
twinybots.ch26
lists.astaro.com20
bugs.chromium.org12
chromereleases.googleblog.com5
bit.ly4
ift.tt3
github.com3
starlabs.sg3
twitter.com3
seclists.org3
www.zdnet.com3
www.tenable.com3
blog.tetrane.com3
thehackernews.com3
msrc.microsoft.com3
securityaffairs.co3
savannah.nongnu.org3
cybersecuritynews.com3
noticiasseguridad.com3
ipssignatures.appspot.com3

Information from Twitter

User URL Info Source
No Data

GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2023/01/16 Score : 1
Added Har-sia Database : 2020/10/20
Last Modified : 2023/01/16
Highest Scored Date : 2020/10/22
Highest Score : 41