Learn about CVE-2017-5048 affecting Google Chrome versions prior to 57.0.2987.98 for Mac, Windows, and Linux, and 57.0.2987.108 for Android. Find out how to mitigate this integer overflow vulnerability.
Google Chrome prior to version 57.0.2987.98 for Mac, Windows, and Linux, and 57.0.2987.108 for Android is affected by an integer overflow vulnerability in FFmpeg. This could allow a remote attacker to execute an out-of-bounds memory write using a specially crafted video file.
Understanding CVE-2017-5048
A remote attacker could exploit an integer overflow in FFmpeg in Google Chrome versions before 57.0.2987.98 for Mac, Windows, and Linux, as well as 57.0.2987.108 for Android, to perform an out-of-bounds memory write via a crafted video file.
What is CVE-2017-5048?
The Impact of CVE-2017-5048
Technical Details of CVE-2017-5048
Google Chrome prior to version 57.0.2987.98 for Mac, Windows, and Linux, and 57.0.2987.108 for Android is affected by an integer overflow vulnerability in FFmpeg.
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Google Chrome users should take immediate steps to mitigate the CVE-2017-5048 vulnerability.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates