原始 OSV JSON
{
"id": "GHSA-pv36-h7jh-qm62",
"aliases": [
"CVE-2020-15999"
],
"details": "### Impact\nA memory corruption bug(Heap overflow) in the FreeType font rendering library.\n\n> This can be exploited by attackers to execute arbitrary code by using specially crafted fonts with embedded PNG images .\n\nAs per https://www.secpod.com/blog/chrome-zero-day-under-active-exploitation-patch-now/ \n\nGoogle is aware of reports that an exploit for CVE-2020-15999 exists in the wild.\n\n### Patches\nUpgrade to 85.3.130 or higher\n\n### References\n- https://www.secpod.com/blog/chrome-zero-day-under-active-exploitation-patch-now/\n- https://www.zdnet.com/article/google-releases-chrome-security-update-to-patch-actively-exploited-zero-day/\n- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15999\n- https://magpcss.org/ceforum/viewtopic.php?f=10&t=17942\n\nTo review the `CEF/Chromium` patch see https://bitbucket.org/chromiumembedded/cef/commits/cd6cbe008b127990036945fb75e7c2c1594ab10d",
"summary": "Heap buffer overflow in CefSharp",
"affected": [
{
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "85.3.130"
}
]
}
],
"package": {
"name": "CefSharp.Common",
"ecosystem": "NuGet"
}
},
{
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "85.3.130"
}
]
}
],
"package": {
"name": "CefSharp.Wpf",
"ecosystem": "NuGet"
}
},
{
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "85.3.130"
}
]
}
],
"package": {
"name": "CefSharp.WinForms",
"ecosystem": "NuGet"
}
},
{
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "85.3.130"
}
]
}
],
"package": {
"name": "CefSharp.Wpf.HwndHost",
"ecosystem": "NuGet"
}
}
],
"modified": "2025-02-03T15:31:58Z",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
"published": "2020-10-27T19:47:38Z",
"references": [
{
"url": "https://github.com/cefsharp/CefSharp/security/advisories/GHSA-pv36-h7jh-qm62",
"type": "WEB"
},
{
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-15999",
"type": "ADVISORY"
},
{
"url": "https://www.nuget.org/packages/CefSharp.Wpf.HwndHost",
"type": "WEB"
},
{
"url": "https://www.nuget.org/packages/CefSharp.Wpf",
"type": "WEB"
},
{
"url": "https://www.nuget.org/packages/CefSharp.WinForms",
"type": "WEB"
},
{
"url": "https://www.nuget.org/packages/CefSharp.Common",
"type": "WEB"
},
{
"url": "https://www.debian.org/security/2021/dsa-4824",
"type": "WEB"
},
{
"url": "https://security.netapp.com/advisory/ntap-20240812-0001",
"type": "WEB"
},
{
"url": "https://security.gentoo.org/glsa/202401-19",
"type": "WEB"
},
{
"url": "https://security.gentoo.org/glsa/202012-04",
"type": "WEB"
},
{
"url": "https://security.gentoo.org/glsa/202011-12",
"type": "WEB"
},
{
"url": "https://lists.fedoraproject.org/archives/list/[email protected]/message/J3QVIGAAJ4D62YEJAJJWMCCBCOQ6TVL7",
"type": "WEB"
},
{
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/J3QVIGAAJ4D62YEJAJJWMCCBCOQ6TVL7",
"type": "WEB"
},
{
"url": "https://googleprojectzero.blogspot.com/p/rca-cve-2020-15999.html",
"type": "WEB"
},
{
"url": "https://github.com/cefsharp/CefSharp",
"type": "PACKAGE"
},
{
"url": "https://crbug.com/1139963",
"type": "WEB"
},
{
"url": "https://chromereleases.googleblog.com/2020/10/stable-channel-update-for-desktop_20.html",
"type": "WEB"
},
{
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00016.html",
"type": "WEB"
},
{
"url": "http://seclists.org/fulldisclosure/2020/Nov/33",
"type": "WEB"
}
],
"schema_version": "1.4.0",
"database_specific": {
"cwe_ids": [
"CWE-119",
"CWE-787"
],
"severity": "MODERATE",
"github_reviewed": true,
"nvd_published_at": "2020-11-03T03:15:00Z",
"github_reviewed_at": "2020-10-27T19:47:22Z"
}
}