Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

P4Nda

Researcher fromTencent Security Xuanwu Lab
#29166of 53,622
8.8Total CVSS
Vulnerabilities · 1
PT-2021-2529
8.8
2021-02-26
Google · V8 · CVE-2021-21195
Name of the Vulnerable Software and Affected Versions: Google Chrome versions prior to 89.0.4389.114 Description: The issue is related to a use after free in V8, which can lead to heap corruption. A remote attacker can potentially exploit this via a crafted HTML page, allowing them to execute arbitrary code or cause a denial of service. The estimated number of potentially affected devices is not specified. Recommendations: For versions prior to 89.0.4389.114, update to version 89.0.4389.114 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable `V8` components until a patch is applied. Avoid using crafted HTML pages that could trigger the heap corruption until the issue is resolved.