CVE-2017-7593: Out of bounds read in Skia library. In the course of parsing an HTML page, the Skia library on Google Chrome prior to 102.0.572.2 would attempt to access data that was outside the bounds of the image. This was caused by a Redeclaration issue. This issue was fixed by updating to version libfreetype.so in package libfreetype.so.6.1.

CVE-2017-7592: Out of bounds read in PDFium. In the course of parsing an HTML page, the PDFium library on Google Chrome prior to 102.0.572.2 would attempt to access data that was outside the bounds of the image. This was caused by a Redeclaration issue. This issue was fixed by updating to version libpng.so.4.
Redeclaration of this type has been known to lead to memory corruption issues. This issue was fixed by updating to version libpng.so.4. Redeclaration of this type has been known to lead to memory corruption issues. This issue was fixed by updating to version libpng.so.4.

CVE-2017-7591: Out of bounds read in Web Audio. In the course of parsing an HTML page, the Web Audio library on Google Chrome prior to 102.0.572.2 would attempt to access data that was outside the bounds of the image. This was caused by

Mitigation Strategies

Mitigation strategies for this issue include:
- Updating to version libpng.so.4 or libfreetype.so.6

Redeclaration of this type has been known to lead to memory corruption issues. This issue was fixed by updating to version libpng.so.4 or libfreetype.so.6
- Disabling Web Audio in Google Chrome

Timeline

Published on: 07/28/2022 01:15:00 UTC
Last modified on: 08/15/2022 11:20:00 UTC

References