CVE-2025-1919: Out of bounds read in Media.
Published Jan 26, 2025
·Updated
Chromium: CVE-2025-1919 Out of bounds read in Media
Credit
@@Bl1nnnk, @@Pisanbao
Affected Software
4 affected componentsFixes available
Microsoft Edge<134.0.3124.51
Microsoft Edge (Chromium-based)
Google Chrome<134.0.6998.35
Google Chrome<134.0.6998.35
134.0.6998.35
Event History
Jan 26, 2025
CVE Published
12:00 AM
Data Sourced
12:00 AM
SeverityWeaknessAffected Software
Mar 5, 2025
CVE Published
via MITRE·03:48 AM
Data Sourced
via MITRE·03:48 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-1919?
The severity of CVE-2025-1919 is classified as Medium.
2
How do I fix CVE-2025-1919?
To fix CVE-2025-1919, update Google Chrome to version 134.0.6998.35 or later.
3
What type of vulnerability is CVE-2025-1919?
CVE-2025-1919 is an out of bounds read vulnerability in Media in Google Chrome.
4
Can CVE-2025-1919 be exploited by attackers?
Yes, CVE-2025-1919 allows remote attackers to potentially perform out of bounds memory access via a crafted HTML page.
5
Which versions of Google Chrome are affected by CVE-2025-1919?
Google Chrome versions prior to 134.0.6998.35 are affected by CVE-2025-1919.