4.3
CVSSv2

CVE-2021-21208

Published: 26/04/2021 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Insufficient data validation in QR scanner in Google Chrome on iOS before 90.0.4430.72 allowed an attacker displaying a QR code to perform domain spoofing via a crafted QR code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

debian debian linux 10.0

fedoraproject fedora 32

fedoraproject fedora 33

fedoraproject fedora 34

Vendor Advisories

Debian Bug report logs - #987053 chromium: Update to version 900443072 (security-fixes) Package: chromium; Maintainer for chromium is Debian Chromium Team <chromium@packagesdebianorg>; Source for chromium is src:chromium (PTS, buildd, popcon) Reported by: Sedat Dilek <sedatdilek@gmailcom> Date: Fri, 16 Apr 202 ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2021-21201 Gengming Liu and Jianyu Chen discovered a use-after-free issue CVE-2021-21202 David Erceg discovered a use-after-free issue in extensions CVE-2021-21203 asnine discovered a use-after-free issue in Blink/Webkit CVE-2021-21204 Tsai-Simek, Jean ...
An insufficient data validation security issue has been found in the QR scanner component of the Chromium browser before version 900443072 ...
 The Chrome team is delighted to announce the promotion of Chrome 90 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 900443072 contains a number of fixes and improvements -- a list of changes is available in the log Watch out for upcoming Chrome and Chromium bl ...