Candidate: CVE-2019-13698 PublicDate: 2019-11-25 15:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13698 https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop.html https://crbug.com/944971 Description: Out of bounds memory access in JavaScript in Google Chrome prior to 73.0.3683.103 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Ubuntu-Description: Notes: amurray| The Debian chromium source package is called chromium-browser in Ubuntu Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_chromium-browser: upstream_chromium-browser: released (73.0.3683.103) precise/esm_chromium-browser: DNE trusty_chromium-browser: ignored (out of standard support) trusty/esm_chromium-browser: DNE xenial_chromium-browser: released (74.0.3729.169-0ubuntu0.16.04.1) bionic_chromium-browser: released (74.0.3729.169-0ubuntu0.18.04.1) disco_chromium-browser: released (73.0.3683.103-0ubuntu1) eoan_chromium-browser: released (73.0.3683.103-0ubuntu1) devel_chromium-browser: released (73.0.3683.103-0ubuntu1)