CVE-2017-5117: Debian Linux

Medium severity, CVSS 6.5. EPSS: 1.7% chance of exploitation in the next 30 days.

Use of an uninitialized value in Skia in Google Chrome prior to 61.0.3163.79 for Linux and Windows allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

Affected products

  • Debian Debian Linux: version 9.0 only
  • Google Chrome: before 61.0.3163.79 (fixed in 61.0.3163.79)

Published 2017-10-27. Last modified 2026-06-17.