CVE-2020-6418highunder attackCWE-843

CVE-2020-6418: high-severity vulnerability in Google Chrome

Published · Updated

100Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 8.8epss 79%
from disclosure to weapon0 days
Published on NVDFeb 27
1st PoCFeb 27
metasploitFeb 19
CISA KEV+615d
exploitation probability
79%top 1% of all CVEs
observed exploitation
yesCISA + VulnCheck
11 public exploit(s)
What the vendors declare (VEX)

Official vendor statements in CSAF/VEX format: whether their product is affected, already fixed, or ruled out — and why. These are the vendor's assertions, not Vexday's judgment.

Fixed
4 products (14 components)
Red Hat Enterprise Linux Desktop Supplementary (v. 6) · Red Hat Enterprise Linux Server Supplementary (v. 6) · Red Hat Enterprise Linux Workstation Supplementary (v. 6) · Red Hat Enterprise Linux HPC Node Supplementary (v. 6)
Action required by CISAfederal deadline: 2022-05-03

Apply updates per vendor instructions.

In short

Google Chrome's JavaScript engine (V8) had a flaw where it confused different data types, allowing attackers to corrupt computer memory through a malicious webpage. This could lead to crashes or arbitrary code execution.

Technical detail

Type confusion vulnerability in V8 allows remote attackers to trigger heap corruption by crafting malicious HTML pages that exploit incorrect type handling during JavaScript execution. Exploitation requires user interaction to visit a crafted page; successful exploitation can result in arbitrary code execution with browser privileges.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
Google · Chrome
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.