CVE-2023-6509: High Use after free in Side Panel Search[1513379] High CVE-2024-0333 Insufficient data validation in Extensions[306119937] Medium Fixes in Kernel for CVEs listed belowCVE-2023-21162, CVE-2023-21163, CVE-2023-21164, CVE-2023-21166, CVE-2023-21215, CVE-2023-21216, CVE-2023-21217, CVE-2023-21218, CVE-2023-21228, CVE-2023-21402
Chromium: CVE-2023-6509 Use after free in Side Panel Search
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in Side Panel Search in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via specific UI interaction. (Chromium security severity: High)
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-6509?
CVE-2023-6509 is a vulnerability in Google Chrome that allows a remote attacker to potentially exploit heap corruption via specific UI interaction.
What is the severity of CVE-2023-6509?
CVE-2023-6509 has a severity rating of High.
Which software is affected by CVE-2023-6509?
Microsoft Edge prior to version 120.0.2210.61 and Microsoft Edge (Chromium-based) are affected by CVE-2023-6509.
How can I fix CVE-2023-6509?
To fix CVE-2023-6509, update Microsoft Edge to version 120.0.2210.61 or higher. For Microsoft Edge (Chromium-based), refer to the provided remediation URL.
What is the CWE for CVE-2023-6509?
CVE-2023-6509 is classified under CWE-416 (Use After Free).