CRITICAL 9.6 npm KEV
Heap buffer overflow in GPU
GHSA-995f-9x5r-2rcj · CVE-2022-4135
Published · Modified
Description
Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
References
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2022-4135
- WEB https://github.com/electron/electron/pull/36444
- WEB https://github.com/electron/electron/pull/36447
- WEB https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop_24.html
- WEB https://crbug.com/1392715
- WEB https://security.gentoo.org/glsa/202305-10
Ready to move
Start Securing
Free, no credit card | First findings in minutes