Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
No PoCs from references.
- https://github.com/Jereanny14/jereanny14.github.io
- https://github.com/Keeper-Security/gitbook-release-notes
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/RENANZG/My-Debian-GNU-Linux
- https://github.com/RENANZG/My-Forensics
- https://github.com/SAHILROKADE/VAPT-report-task3
- https://github.com/Threekiii/CVE
- https://github.com/Trinadh465/platform_external_libvpx_v1.4.0_CVE-2023-5217
- https://github.com/Trinadh465/platform_external_libvpx_v1.8.0_CVE-2023-5217
- https://github.com/UT-Security/cve-2023-5217-poc
- https://github.com/compsec-snu/tiktag
- https://github.com/fkie-cad/nvd-json-data-feeds
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/rafsys/My-Forensics
- https://github.com/sp25-tiktag/tiktag
- https://github.com/wrv/cve-2023-5217-poc