Описание
Use after free in Indexed DB in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| chromium | fixed | 102.0.5005.61-1 | package | |
| chromium | end-of-life | buster | package | |
| chromium | end-of-life | stretch | package |
EPSS
Процентиль: 55%
0.0088
Низкий
Связанные уязвимости
CVSS3: 9.6
ubuntu
около 4 лет назад
Use after free in Indexed DB in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
CVSS3: 9.6
nvd
около 4 лет назад
Use after free in Indexed DB in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
CVSS3: 9.6
github
около 4 лет назад
Use after free in Indexed DB in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
CVSS3: 10
fstec
около 4 лет назад
Уязвимость функции IndexedDB браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
EPSS
Процентиль: 55%
0.0088
Низкий