Field Assessment
AI analysis pending.
Cross-Reference — CISA KEV
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Unknown
Added to KEV: 2022-06-08
Required action: Apply updates per vendor instructions.
CVE
CVE-2017-5070
Severity
HIGH
CVSS
8.8
EPSS
31.21%
Windows Linux Android Chrome
Original Filing — NVD Description
Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.