# CVE-2023-5217

### NIST Link

<https://nvd.nist.gov/vuln/detail/CVE-2023-5217>

### Description

Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

### Impact to Keeper

Keeper Security may have been impacted by this vulnerability in the Desktop App since we use the Electron framework. As a precaution, we immediately updated to Electron framework version to v22.3.25 and published [Keeper Desktop version 16.10.9](https://docs.keeper.io/en/release-notes/desktop/web-vault-+-desktop-app/vault-release-16.10.9).

If you have any questions, please email us at <security@keepersecurity.com>.
