CVE-2020-6458: High severity google chrome vulnerability
Out of bounds read and write in PDFium in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-6458?
CVE-2020-6458 is a vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted PDF file in Google Chrome prior to version 81.0.4044.122.
How severe is CVE-2020-6458?
CVE-2020-6458 has a severity rating of 8.8 (high).
What software is affected by CVE-2020-6458?
Google Chrome versions prior to 81.0.4044.122 and Debian Linux versions 9.0 and 10.0 are affected by CVE-2020-6458.
How can I fix CVE-2020-6458 in Google Chrome?
To fix CVE-2020-6458 in Google Chrome, update your browser to version 81.0.4044.122 or later.
How can I fix CVE-2020-6458 in Debian Linux?
To fix CVE-2020-6458 in Debian Linux, update the chromium package to one of the following versions: 90.0.4430.212-1~deb10u1, 116.0.5845.180-1~deb11u1, 119.0.6045.199-1~deb11u1, 116.0.5845.180-1~deb12u1, 119.0.6045.199-1~deb12u1, 119.0.6045.199-1, 120.0.6099.71-1.