Описание
Use after free in Permissions in Google Chrome prior to 93.0.4577.63 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Use after free in Permissions in Google Chrome prior to 93.0.4577.63 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-30607
- https://chromereleases.googleblog.com/2021/08/stable-channel-update-for-desktop_31.html
- https://crbug.com/1235949
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5LVY4WIWTVVYKQMROJJS365TZBKEARCF
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IPJPUSAWIJMQFBQQQYXAICLI4EKFQOH6
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QW4R2K5HVJ4R6XDZYOJCCFPIN2XHNS3L
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-30607
Связанные уязвимости
CVSS3: 8.8
ubuntu
больше 4 лет назад
Chromium: CVE-2021-30607 Use after free in Permissions
CVSS3: 8.8
debian
больше 4 лет назад
Chromium: CVE-2021-30607 Use after free in Permissions
CVSS3: 8.8
fstec
больше 4 лет назад
Уязвимость настройки разрешений Permissions браузера Google Chrome, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность защищаемой информации