PT-2022-6781 · Google+1 · Google Chrome+1

Published

2022-03-01

·

Updated

2024-10-03

·

CVE-2022-4921

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 99.0.4844.51
Description The issue is related to a use after free in the Accessibility component of Google Chrome, which could allow a remote attacker to perform arbitrary read/write operations via a crafted HTML page if the user is convinced to engage in specific UI gestures.
Recommendations For versions prior to 99.0.4844.51, update to version 99.0.4844.51 or later to resolve the issue. As a temporary workaround, consider restricting the use of the Accessibility component until a patch is applied.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2023-04638
CVE-2022-4921
DSA-5089-1

Affected Products

Astra Linux
Google Chrome