CVE-2023-6509: Debian Linux

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

Use after free in Side Panel Search in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via specific UI interaction. (Chromium security severity: High)

Affected products

  • Debian Debian Linux: version 11.0 only; version 12.0 only
  • Fedoraproject Fedora: version 38 only; version 39 only
  • Google Chrome: before 120.0.6099.62 (fixed in 120.0.6099.62)

Published 2023-12-06. Last modified 2026-06-17.