First published: Thu Jan 14 2021(Updated: )
Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit: chrome-cve-admin@google.com Anonymous
Affected Software | Affected Version | How to fix |
---|---|---|
debian/chromium | 90.0.4430.212-1~deb10u1 116.0.5845.180-1~deb11u1 118.0.5993.70-1~deb11u1 116.0.5845.180-1~deb12u1 118.0.5993.70-1~deb12u1 118.0.5993.70-1 | |
Google Chrome (Trace Event) | <88.0.4324.182 | 88.0.4324.182 |
Google Chrome (Trace Event) | <88.0.4324.182 | |
Linux Kernel | ||
Fedora | =32 | |
Fedora | =33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-21152 has a high severity rating due to its potential for remote exploitation through heap corruption.
To mitigate CVE-2021-21152, update Google Chrome to version 88.0.4324.182 or later.
CVE-2021-21152 affects Google Chrome versions prior to 88.0.4324.182 and Chromium on Debian systems.
While you can continue to use your system, it is highly recommended to update to avoid potential security risks associated with CVE-2021-21152.
CVE-2021-21152 is a heap buffer overflow vulnerability that allows remote attackers to exploit heap corruption via a crafted HTML page.