Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3591-1 | firefox-esr security update |
Debian DLA |
DLA-3598-1 | libvpx security update |
Debian DLA |
DLA-3601-1 | thunderbird security update |
Debian DSA |
DSA-5508-1 | chromium security update |
Debian DSA |
DSA-5509-1 | firefox-esr security update |
Debian DSA |
DSA-5510-1 | libvpx security update |
EUVD |
EUVD-2023-2578 | Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
Github GHSA |
GHSA-qqvq-6xgj-jw8g | Electron affected by libvpx's heap buffer overflow in vp8 encoding |
Ubuntu USN |
USN-6403-1 | libvpx vulnerabilities |
Ubuntu USN |
USN-6403-2 | libvpx vulnerabilities |
Ubuntu USN |
USN-6403-3 | libvpx vulnerabilities |
Ubuntu USN |
USN-6404-1 | Firefox vulnerabilities |
Ubuntu USN |
USN-6405-1 | Thunderbird vulnerabilities |
Ubuntu USN |
USN-7172-1 | libvpx vulnerability |
Tue, 21 Oct 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 03 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple ipados
|
|
| CPEs | cpe:2.3:o:apple:ipad_os:16.7:*:*:*:*:*:*:* |
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:16.7:*:*:*:*:*:*:* |
| Vendors & Products |
Apple ipad Os
|
Apple ipados
|
Mon, 03 Feb 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Fri, 20 Dec 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_focus:*:*:*:*:*:android:*:* |
cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:* cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* |
| Vendors & Products |
Mozilla firefox Esr
Mozilla firefox Focus |
Wed, 14 Aug 2024 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Subscriptions
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2025-10-21T23:05:36.191Z
Reserved: 2023-09-27T01:52:05.679Z
Link: CVE-2023-5217
Updated: 2024-08-02T07:52:08.351Z
Status : Analyzed
Published: 2023-09-28T16:15:10.980
Modified: 2025-10-24T14:07:24.923
Link: CVE-2023-5217
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Github GHSA
Ubuntu USN