Back to Database
Status published
High
CVE-2017-5031
A use after free in ANGLE in Google Chrome prior...
Vulnerability Description
A use after free in ANGLE in Google Chrome prior to 57.0.2987.98 for Windows allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-5031
Credits & Attribution
No credits recorded in the NVD database.
References
- https://chromereleases.googleblog.com/2017/03/stable-channel-update-for-desktop.html
- https://bugzilla.mozilla.org/show_bug.cgi?id=1328762
- https://security.gentoo.org/glsa/201704-02
- https://crbug.com/682020
- http://www.debian.org/security/2017/dsa-3810
- http://www.securityfocus.com/bid/96767
- https://www.mozilla.org/security/advisories/mfsa2017-14/
- http://rhn.redhat.com/errata/RHSA-2017-0499.html
- http://www.securityfocus.com/bid/98326
More from Mozilla
View All →CVE-2025-9187
Memory safety bugs fixed in Firefox 142 and Thunderbird 142
Unknown
0
CVE-2025-9186
Spoofing issue in the Address Bar component of Firefox Focus for Android
Unknown
0
CVE-2025-9185
Memory safety bugs fixed in Firefox ESR 115.27, Firefox ESR 128.14, Thunderbird ESR 128.14, Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142
Unknown
0
CVE-2025-9184
Memory safety bugs fixed in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142
Unknown
0
CVE-2025-9183
Spoofing issue in the Address Bar component
Unknown
0
Affected Vendor
Mozilla
View all reports →Affected Software
Firefox ESR, Firefox
Vulnerable Versions:
unspecified
Timeline
Official Publish:
April 24th, 2017
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.