Lucene search

K
freebsdFreeBSD2899DA38-7300-11ED-92CE-3065EC8FD3EC
HistoryDec 02, 2022 - 12:00 a.m.

chromium -- Type confusion in V8

2022-12-0200:00:00
vuxml.freebsd.org
15
chromium
type confusion
v8
security fix
clement lecigne
google threat analysis group
exploit
unix

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

0.004 Low

EPSS

Percentile

73.9%

Chrome Releases reports:

This release contains 1 security fix:

[1394403] High CVE-2022-4262: Type Confusion in V8. Reported by Clement Lecigne of Google’s Threat Analysis Group on 2022-11-29

Google is aware that an exploit for CVE-2022-4262 exists in the wild.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchchromium<Β 108.0.5359.94UNKNOWN
FreeBSDanynoarchungoogled-chromium<Β 108.0.5359.94UNKNOWN

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

0.004 Low

EPSS

Percentile

73.9%