Google · V8 · CVE-2021-21195
Name of the Vulnerable Software and Affected Versions:
Google Chrome versions prior to 89.0.4389.114
Description:
The issue is related to a use after free in V8, which can lead to heap corruption. A remote attacker can potentially exploit this via a crafted HTML page, allowing them to execute arbitrary code or cause a denial of service. The estimated number of potentially affected devices is not specified.
Recommendations:
For versions prior to 89.0.4389.114, update to version 89.0.4389.114 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable `V8` components until a patch is applied. Avoid using crafted HTML pages that could trigger the heap corruption until the issue is resolved.