Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2023-2033 Details

Description

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-2033 CISA-ADPUS Government Resource
https://chromereleases.googleblog.com/2023/04/stable-channel-update-for-desktop_14.html CVERelease NotesVendor Advisory
https://crbug.com/1432210 CVEPermissions Required
https://lists.fedoraproject.org/archives/list/[email protected]/message/4AOSGAOPXLBK4A5ZRTVZ4M6QKVLSWMWG/ CVEMailing List
https://lists.fedoraproject.org/archives/list/[email protected]/message/ES2CDRHR2Y4WY6DNDIAPYZFXJU3ZBFAV/ CVEMailing List

see all 23 references

This CVE is in CISA's Known Exploited Vulnerabilities Catalog

Reference CISA's BOD 22-01 and Known Exploited Vulnerabilities Catalog for further guidance and requirements.

Vulnerability NameDate AddedDue DateRequired Action
Google Chromium V8 Type Confusion VulnerabilityApr 17, 2023May 8, 2023Apply updates per vendor instructions.

Weakness Enumeration

CWE-IDCWE NameSource
CWE-843Access of Resource Using Incompatible Type ('Type Confusion')[email protected]
CWE-843Access of Resource Using Incompatible Type ('Type Confusion')CISA-ADP

Affected Products

ProductVersions
google chrome
< 112.0.5615.121

CPE

  • cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
debian debian linux
11.0

CPE

  • cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
fedoraproject fedora
36
37
38

CPE

  • cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
  • cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
  • cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
couchbase couchbase server
< 7.1.5
7.2.0

CPE

  • cpe:2.3:a:couchbase:couchbase_server:*:*:*:*:*:*:*:*
  • cpe:2.3:a:couchbase:couchbase_server:7.2.0:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

22 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2023-2033
NVD Published Date:
Apr 14, 2023
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2023-2033 Details - Not Deferred