Описание
Use after free in Resources in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
A flaw was found in Chromium. This use-after-free vulnerability in the Resources component on Android could allow a remote attacker, who has already compromised the renderer process, to potentially escape the sandbox. This could be achieved by enticing a user to visit a specially crafted HTML page, leading to a higher level of system access.
Отчет
This Important flaw in Chromium allows a remote attacker to escape the browser's sandbox after compromising the renderer process. This vulnerability, triggered by user interaction with a crafted HTML page, could lead to further system compromise by bypassing a critical security boundary.
Дополнительная информация
Статус:
8.2 High
CVSS3
Связанные уязвимости
Use after free in Resources in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Use after free in Resources in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Use after free in Resources in Google Chrome on Android prior to 151.0 ...
Use after free in Resources in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
8.2 High
CVSS3