Resource management error in Google Chrome - CVE-2019-13716

 

Resource management error in Google Chrome - CVE-2019-13716

Published: October 24, 2019


Vulnerability identifier: #VU22229
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-13716
CWE-ID: CWE-399
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a resource management error. A remote attacker can use a specially crafted webpage to crash the affected browser.


Affected software

Google Chrome
Arch Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Opensuse
SUSE Linux

How to mitigate CVE-2019-13716

Install updates from vendor's website.

Google Chrome - update to 78.0.3904.70

External References

Related Security Bulletins