CSS Paint API in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to leak cross-origin data via a crafted HTML page.Referenceshttp://www.securityfocus.com/bid/104309https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.htmlhttp://www.securitytracker.com/id/1041014https://access.redhat.com/errata/RHSA-2018:1815https://crbug.com/835589https://www.debian.org/security/2018/dsa-4237