Intrusion Prevention

Chrome.Skia.Out.of.Bounds.Read

Description

This indicates an attack attempt against an Out Of Bounds Read vulnerability in Google Chrome Skia engine.
The vulnerability is caused due to an incorrect bounds check in Skia's SkPathRef. An attacker can exploit this by tricking an unsuspecting user into visiting a malicious webpage where malformed input data is provided to the Skia engine

Affected Products

Chrome versions before 62.0.3202.62

Impact

System Compromise: Remote attackers may gain control of vulnerable systems.

Recommended Actions

Apply the latest update from the vendor.
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html

CVE References

CVE-2017-15388