CVE-2023-4761: Out of bounds memory access in FedCM
Chromium: CVE-2023-4761 Out of bounds memory access in FedCM
Other sources
Out of bounds memory access in FedCM in Google Chrome prior to 116.0.5845.179 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-4761?
The severity of CVE-2023-4761 is High.
What is the affected software for CVE-2023-4761?
The affected software for CVE-2023-4761 includes Google Chrome, Microsoft Edge (Chromium-based), and Debian Linux.
How can a remote attacker exploit CVE-2023-4761?
A remote attacker who has compromised the renderer process can exploit CVE-2023-4761 by performing an out of bounds memory read via a crafted HTML page.
Is there a fix available for CVE-2023-4761?
Yes, the fix for CVE-2023-4761 is available. Please update your software to the latest version.
Where can I find more information about CVE-2023-4761?
More information about CVE-2023-4761 can be found on the Microsoft Security Response Center, Debian Security Tracker, and Google Chrome Releases websites.