Description


Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Related CPE's


Vulnerable

o

fedoraproject

fedora

3

o

debian

debian_linux

2

References




https://crbug.com/1252918

Permissions Required




https://www.debian.org/security/2022/dsa-5046

Mailing ListThird Party Advisory



https://crbug.com/1252918

Permissions Required




https://www.debian.org/security/2022/dsa-5046

Mailing ListThird Party Advisory

Weaknesses



CWE-416


CWE-416

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

8.8 · High

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2021-10-08T22:15:08.373

3 years ago

Last modified

2025-02-19T19:37:44.870

4 months ago