Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
inside PDFs and other specially crafted documents could corrupt the memory of the application, allowing an adversary to achieve arbitrary code execution inside the browser.
In accordance with our coordinated disclosure policy, Cisco Talos worked with Google to ensure that these issues are resolved and that an update is available for affected customers.
Vulnerability details Google V8 Array.prototype memory corruption vulnerability (TALOS-2020-1044/CVE-2020-6458)
Read the complete vulnerability advisory here for additional information.
Versions tested Talos tested and confirmed that version 80.0.3987.158 of Google Chrome is affected by this vulnerability.
Coverage The following SNORTⓇ rules will detect exploitation attempts. Note that additional rules may be released at a future date and current rules are subject to change pending additional vulnerability information. For the most current rule information, please refer to your Firepower Management Center or Snort.org.
Snort Rules: 53599, 53600