Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
OOB Access in CefLayeredWindowUpdaterOSR::OnAllocatedSharedMemory
Vulnerability Description
CEF (Chromium Embedded Framework ) is a simple framework for embedding Chromium-based browsers in other applications. `CefLayeredWindowUpdaterOSR::OnAllocatedSharedMemory` does not check the size of the shared memory, which leads to out-of-bounds read outside the sandbox. This vulnerability was patched in commit 1f55d2e.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
跨界内存读
Vulnerability Title
Chromium Embedded Framework (CEF) 缓冲区错误漏洞
Vulnerability Description
Chromium Embedded Framework(CEF)是Chromium Embedded Framework开源的一个简单的框架。用于在其他应用程序中嵌入基于 Chromium 的浏览器。 Chromium Embedded Framework (CEF)存在缓冲区错误漏洞,该漏洞源于 CefLayeredWindowUpdaterOSR OnAlownedSharedMemory没有检查共享内存的大小,导致越界读取。
CVSS Information
N/A
Vulnerability Type
N/A