Описание
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
A flaw was found in Google Chrome. This use-after-free vulnerability in the HTML component allows a remote attacker to execute arbitrary code within the browser's sandbox. This can be exploited by enticing a user to visit a specially crafted HTML page.
Отчет
This is an Important flaw affecting Chromium-based browsers, such as chromium-browser in Red Hat products. A use-after-free vulnerability in the HTML component allows a remote attacker to achieve arbitrary code execution within the browser's sandbox. This requires user interaction, typically by visiting a specially crafted web page, but can lead to significant compromise of the affected system.
Дополнительная информация
Статус:
EPSS
8.8 High
CVSS3
Связанные уязвимости
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowe ...
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
EPSS
8.8 High
CVSS3