Описание
Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
A flaw was found in Google Chrome's GPU component. This use-after-free vulnerability allows a remote attacker, who has already compromised the browser's renderer process, to potentially escape the browser's security sandbox. This escape can be achieved by tricking a user into visiting a specially crafted HTML page.
Отчет
This Important flaw in the Google Chrome GPU component allows a remote attacker to perform a sandbox escape. Exploitation requires a prior compromise of the browser's renderer process and user interaction, such as visiting a specially crafted HTML page. Successful exploitation could lead to arbitrary code execution outside the browser's security sandbox.
Дополнительная информация
Статус:
EPSS
8.2 High
CVSS3
Связанные уязвимости
Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed ...
Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
EPSS
8.2 High
CVSS3