Lucene search

K
freebsdFreeBSDC80CE2DD-E831-11EC-BCD2-3065EC8FD3EC
HistoryJun 09, 2022 - 12:00 a.m.

chromium -- multiple vulnerabilities

2022-06-0900:00:00
vuxml.freebsd.org
35
chromium
security
webgpu
webgl
compositing
angle
vulnerabilities

CVSS3

9.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:H

EPSS

0.005

Percentile

75.6%

Chrome Releases reports:

This release contains 7 security fixes, including:

[1326210] High CVE-2022-2007: Use after free in WebGPU. Reported by David Manouchehri on 2022-05-17
[1317673] High CVE-2022-2008: Out of bounds memory access in WebGL. Reported by khangkito - Tran Van Khang (VinCSS) on 2022-04-19
[1325298] High CVE-2022-2010: Out of bounds read in compositing. Reported by Mark Brand of Google Project Zero on 2022-05-13
[1330379] High CVE-2022-2011: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) on 2022-05-31

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchchromium< 102.0.5005.115UNKNOWN

CVSS3

9.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:H

EPSS

0.005

Percentile

75.6%