← לוח פגיעויות

CVE-2017-5030

גבוהה 8.8 מנוצלת בשטח (KEV)

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Google Chromium V8 Memory Corruption Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
Apply updates per vendor instructions.

תיאור (מקור, אנגלית)

Incorrect handling of complex species in V8 in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac and 57.0.2987.108 for Android allowed a remote attacker to execute arbitrary code via a crafted HTML page.

מדדים

CVSS 3.1
8.8 (HIGH) מקור הציון: NVD CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
42% (אחוזון 100) נכון ל-25/7/2026
CWE
CWE-125

מוצרים מושפעים

google: chrome; apple: macos; linux: linux kernel; microsoft: windows; google: android; debian: debian linux; redhat: enterprise linux desktop; redhat: enterprise linux server; redhat: enterprise linux workstation

קישורים