CVE-2021-21143: Heap buffer overflow in Extensions
Heap buffer overflow in Extensions in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-21143?
CVE-2021-21143 has a medium severity rating due to its potential to exploit heap corruption through malicious Chrome Extensions.
How do I fix CVE-2021-21143?
To fix CVE-2021-21143, update Google Chrome to version 88.0.4324.146 or later.
Who is affected by CVE-2021-21143?
Users of Google Chrome versions prior to 88.0.4324.146 and Fedora versions 32 and 33 are affected by CVE-2021-21143.
What type of vulnerability is CVE-2021-21143?
CVE-2021-21143 is categorized as a heap buffer overflow vulnerability.
Can CVE-2021-21143 be exploited remotely?
Yes, CVE-2021-21143 can be exploited if a user is convinced to install a malicious Chrome Extension.