Rewterz
Rewterz Threat Advisory – CVE-2020-16013 – Google Chrome V8 security bypass
November 12, 2020
Rewterz
Rewterz Threat Advisory – CVE-2020-7538 – ICS: Schneider Electric PLC Simulator for EcoStruxure Control Expert
November 12, 2020

Rewterz Threat Advisory – CVE-2020-16017 – Google Chrome site isolation code execution

Severity

High

Analysis Summary

Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in site isolation. By persuading a victim to visit a specially-crafted Web site, an attacker could exploit this vulnerability to execute arbitrary code or cause the application to crash on the system.

Impact

  • Gain Access
  • Execute arbitrary code

Affected Vendors

Google

Affected Products

Google Chrome

Remediation

Upgrade to the latest version of Google Chrome (86.0.4240.198 or later).