Описание
Use after free in WebApp Installs in Google Chrome prior to 93.0.4577.63 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
Use after free in WebApp Installs in Google Chrome prior to 93.0.4577.63 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-30622
- https://chromereleases.googleblog.com/2021/08/stable-channel-update-for-desktop_31.html
- https://crbug.com/1224419
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5LVY4WIWTVVYKQMROJJS365TZBKEARCF
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IPJPUSAWIJMQFBQQQYXAICLI4EKFQOH6
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QW4R2K5HVJ4R6XDZYOJCCFPIN2XHNS3L
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-30622
Связанные уязвимости
Chromium: CVE-2021-30622 Use after free in WebApp Installs
Chromium: CVE-2021-30622 Use after free in WebApp Installs
Chromium: CVE-2021-30622 Use after free in WebApp Installs
Уязвимость установщика веб-приложений браузера Microsoft Edge, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность, доступность информации