CVE-2015-6773: Google Chrome
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted graphics data.
Affected products
- Google Chrome: up to and including 46.0.2490.86
Published 2015-12-06. Last modified 2026-06-17.