PT-2022-6775 · Google+1 · Google Chrome+1

Sri

·

Published

2022-04-26

·

Updated

2024-10-03

·

CVE-2022-4919

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 101.0.4951.41
Description The issue is related to a use after free in Base Internals, allowing a remote attacker to perform arbitrary read/write via a crafted HTML page. This can be exploited by a remote attacker using a specially crafted HTML page.
Recommendations For versions prior to 101.0.4951.41, update to version 101.0.4951.41 or later to resolve the issue. As a temporary workaround, consider restricting access to crafted HTML pages until a patch is applied.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2023-04628
CVE-2022-4919
DSA-5125-1

Affected Products

Astra Linux
Google Chrome