7.8
CVSSv3

CVE-2022-0301

Published: 12/02/2022 Updated: 08/08/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap buffer overflow in DevTools in Google Chrome before 97.0.4692.99 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure For the stable distribution (bullseye), this problem has been fixed in version 970469299-1~deb11u2 We recommend that you upgrade your chromium packages For the detailed security status of chr ...
The Stable channel has been updated to 970469299 for Windows, Mac and Linux which will roll out over the coming days/weeks Extended stable channel has also been updated to 9604664110 for Windows and Mac which will roll out over the coming days/weeksA full list of changes in this build is available in the log Interested in switching release ...
LTS-96 has been updated in the LTS channel to 9604664202 (Platform Version: 14268770) for most ChromeOS devices Want to know more about Long-term Support? Click here This update includes the following Security fixes:1295786  High  CVE-2022-0796 uaf in blink::MediaInspectorContextImpl::CullPlayers(blink::Web ...