An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
| Software | From | Fixed in |
|---|---|---|
| google / chrome | - | 73.0.3683.75 |
| opensuse / leap | 42.3 | 42.3.x |
| opensuse / leap | 15.0 | 15.0.x |
| opensuse / backports | sle-15 | sle-15.x |
| opensuse / leap | 15.1 | 15.1.x |