4.3
CVSSv2

CVE-2021-21218

Published: 26/04/2021 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Uninitialized data in PDFium in Google Chrome before 90.0.4430.72 allowed a remote malicious user to obtain potentially sensitive information from process memory via a crafted PDF file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

debian debian linux 10.0

fedoraproject fedora 32

fedoraproject fedora 33

fedoraproject fedora 34

Vendor Advisories

Debian Bug report logs - #987053 chromium: Update to version 900443072 (security-fixes) Package: chromium; Maintainer for chromium is Debian Chromium Team <chromium@packagesdebianorg>; Source for chromium is src:chromium (PTS, buildd, popcon) Reported by: Sedat Dilek <sedatdilek@gmailcom> Date: Fri, 16 Apr 202 ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2021-21201 Gengming Liu and Jianyu Chen discovered a use-after-free issue CVE-2021-21202 David Erceg discovered a use-after-free issue in extensions CVE-2021-21203 asnine discovered a use-after-free issue in Blink/Webkit CVE-2021-21204 Tsai-Simek, Jean ...
An uninitialized Use security issue has been found in the PDFium component of the Chromium browser before version 900443072 ...
 The Chrome team is delighted to announce the promotion of Chrome 90 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 900443072 contains a number of fixes and improvements -- a list of changes is available in the log Watch out for upcoming Chrome and Chromium bl ...