CVE-2017-5025: Google Chrome
Medium severity, CVSS 5.5. EPSS: 1.3% chance of exploitation in the next 30 days.
FFmpeg in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted video file.
Affected products
- Google Chrome: up to and including 55.0.2883.87
Published 2017-02-17. Last modified 2026-06-17.