CVE-2020-15981: Out of bounds read in audio
Out of bounds read in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-15967
- CVE-2020-15968
- CVE-2020-15969
- CVE-2020-15970
- CVE-2020-15971
- CVE-2020-15972
- CVE-2020-15990
- CVE-2020-15991
- CVE-2020-15973
- CVE-2020-15974
- CVE-2020-15975
- CVE-2020-15976
- CVE-2020-6557
- CVE-2020-15977
- CVE-2020-15978
- CVE-2020-15979
- CVE-2020-15980
- CVE-2020-15982
- CVE-2020-15983
- CVE-2020-15984
- CVE-2020-15985
- CVE-2020-15986
- CVE-2020-15987
- CVE-2020-15992
- CVE-2020-15988
- CVE-2020-15989
Frequently Asked Questions
What is vulnerability CVE-2020-15981?
CVE-2020-15981 is an out of bounds read vulnerability in audio in Google Chrome prior to version 86.0.4240.75.
How does CVE-2020-15981 impact users?
CVE-2020-15981 allows a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
Which software versions are affected by CVE-2020-15981?
Google Chrome prior to version 86.0.4240.75, Fedoraproject Fedora 31, 32, 33, openSUSE Backports SLE 15.0-sp2, and Debian Debian Linux 10.0 with certain versions of the chromium package.
What is the severity of CVE-2020-15981?
The severity of CVE-2020-15981 is medium with a CVSS score of 6.5.
How can I fix CVE-2020-15981?
To fix CVE-2020-15981, update Google Chrome to version 86.0.4240.75 or later, or update the chromium package to the patched versions mentioned in the Debian package remedy.