Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-2998

Опубликовано: 26 сент. 2022
Источник: debian
EPSS Низкий

Описание

Use after free in Browser Creation in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who had convinced a user to engage in a specific UI interaction to potentially exploit heap corruption via a crafted HTML page.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromiumfixed104.0.5112.101-1package
chromiumend-of-lifebusterpackage

Примечания

  • https://bugs.chromium.org/p/project-zero/issues/detail?id=2300

EPSS

Процентиль: 89%
0.04473
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 3 лет назад

Use after free in Browser Creation in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who had convinced a user to engage in a specific UI interaction to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
nvd
больше 3 лет назад

Use after free in Browser Creation in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who had convinced a user to engage in a specific UI interaction to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
github
больше 3 лет назад

Use after free in Browser Creation in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who had convinced a user to engage in a specific UI interaction to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
fstec
больше 3 лет назад

Уязвимость функции Browser Creation операционной системы Chrome OS, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 89%
0.04473
Низкий