CVE-2025-5283

Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

History

03 Nov 2025, 20:19

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/05/msg00043.html -
  • () https://lists.debian.org/debian-lts-announce/2025/05/msg00046.html -

Information

Published : 2025-05-27 21:15

Updated : 2025-11-03 20:19


NVD link : CVE-2025-5283

Mitre link : CVE-2025-5283

CVE.ORG link : CVE-2025-5283


JSON object : View

Products Affected

google

  • chrome
CWE
CWE-416

Use After Free