← العودة للجدول
CVE-2020-15999
Google Chrome FreeType Heap Buffer Overflow Vulnerability — KEV
📅 2021-11-03
🔴 Critical 🔥 Yes CISA KEV Exploit Android 🎯 EPSS 93.03%

📋 الوصف الكامل

Google Chrome uses FreeType, an open-source software library to render fonts, which contains a heap buffer overflow vulnerability in the function Load_SBit_Png when processing PNG images embedded into fonts. This vulnerability is part of an exploit chain with CVE-2020-17087 on Windows and CVE-2020-16010 on Android. | Apply updates per vendor instructions.

💻 الأنظمة المتأثرة

Google Chrome FreeType

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2020-15999

📡 المصدر

CISA KEV

✅ الحلول والتخفيف

Apply patch by 2021-11-17

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←