Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yu-Chang Chen

Researcher fromDEVCORE Internship Program
#29700of 53,634
8.8Total CVSS
Vulnerabilities · 1
PT-2022-4050
8.8
2022-08-02
Google · Google Chrome · CVE-2022-2624
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 104.0.5112.79 **Description** The issue is related to a heap buffer overflow in the PDFium PDF content handler, which can be exploited by a remote attacker who convinces a user to engage in specific interactions. This can potentially lead to heap corruption via a crafted PDF file. The attacker could execute arbitrary code. **Recommendations** For versions prior to 104.0.5112.79, update to version 104.0.5112.79 or later to resolve the issue. As a temporary workaround, consider avoiding the use of PDF files from untrusted sources until the update is applied.