CVE-2019-5825 is an out-of-bounds write vulnerability in Google Chrome versions prior to 73.0.3683.86, allowing a remote attacker to potentially cause heap corruption via a crafted HTML page. Rated Medium (CVSS 6.5), it requires user interaction (UI:R) but has low attack complexity (AC:L) and can lead to high availability impact (A:H). This vulnerability is actively exploited (KEV: Yes) with public Metasploit modules available, though it has garnered minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 73.0.3683.86CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.