Netskope Threat Labs

BROWSER-CHROME Google Chrome ReadableStream out of bounds read attempt

IPS-CFWIPS-SWG

1 SID: 54622

First seen
September 2022
Last seen
October 2026

Detects web content that exploits CVE-2020-6390, an out-of-bounds read in Chrome's Blink stream handling that can leak memory contents (information disclosure). The rule matches the ReadableStream tee and node iterator sequence that public exploits use to read beyond allocated memory.