CVE-2023-5217
Heap buffer overflow in libvpx
NIST Link
https://nvd.nist.gov/vuln/detail/CVE-2023-5217
Description
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Impact to Keeper
Keeper Security may have been impacted by this vulnerability in the Desktop App since we use the Electron framework. As a precaution, we immediately updated to Electron framework version to v22.3.25 and published Keeper Desktop version 16.10.9.
If you have any questions, please email us at security@keepersecurity.com.
Last updated