PT-2022-2490 · Google+2 · Google Chrome+2

Published

2022-05-10

·

Updated

2024-06-15

·

CVE-2022-1636

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 101.0.4951.64
Description The issue is related to the use of memory after it has been freed in the Performance interfaces of Google Chrome. This could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Recommendations For versions prior to 101.0.4951.64, update to version 101.0.4951.64 or later to resolve the issue. As a temporary workaround, consider restricting access to the Performance APIs until a patch is available.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-02900
CVE-2022-1636
DSA-5134-1
MGASA-2022-0188
OPENSUSE-SU-2022:0133-1
OPENSUSE-SU-2022:0147-1
OPENSUSE-SU-2022:0156-1
OPENSUSE-SU-2022_0147-1
OPENSUSE-SU-2022_0156-1
OPENSUSE-SU-2024:12061-1
OPENSUSE-SU-2024:12948-1

Affected Products

Astra Linux
Google Chrome
Suse