Lucene search

K
cvelistChromeCVELIST:CVE-2022-2296
HistoryJul 28, 2022 - 1:01 a.m.

CVE-2022-2296

2022-07-2801:01:01
Chrome
www.cve.org
9
chrome os
google chrome
cve-2022-2296
heap corruption
remote attacker
ui interactions

EPSS

0.005

Percentile

77.4%

Use after free in Chrome OS Shell in Google Chrome on Chrome OS prior to 103.0.5060.114 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via direct UI interactions.

CNA Affected

[
  {
    "product": "Chrome",
    "vendor": "Google",
    "versions": [
      {
        "lessThan": "103.0.5060.114",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]