Vunerability CVE-2023-4863 and SiteMinder
search cancel

Vunerability CVE-2023-4863 and SiteMinder

book

Article ID: 275242

calendar_today

Updated On: 04-15-2025

Products

SITEMINDER

Issue/Introduction

From Mitre.org...

"Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)"

Environment

Release : 12.8.x

Resolution

This CVE relates to Google Chrome and would not normally apply to SiteMinder. 

As far as the SiteMinder product is concerned, "Siteminder does not use the WebP library and neither ship this library as part of the installer."