PT-2022-4792 · Google+1 · Google Chrome+1

Piotr Tworek

·

Published

2022-05-13

·

Updated

2024-06-15

·

CVE-2022-2613

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 104.0.5112.79
Description The issue is related to a use after free in the Input component of Google Chrome, which can be exploited by a remote attacker who convinces a user to engage in specific interactions. This could potentially lead to heap corruption via specific UI interactions. The vulnerability may allow an attacker to disclose protected information using a specially crafted web page.
Recommendations For versions prior to 104.0.5112.79, update to version 104.0.5112.79 or later to resolve the issue. At the moment, there is no information about additional mitigation measures for this vulnerability.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-05747
CVE-2022-2613
DSA-5201-1
MGASA-2022-0277
OPENSUSE-SU-2022:10086-1
OPENSUSE-SU-2022:10092-1
OPENSUSE-SU-2024:12251-1
OPENSUSE-SU-2024:12948-1

Affected Products

Astra Linux
Google Chrome