First published: Tue May 18 2021(Updated: )
Use after free in Loader in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit: chrome-cve-admin@google.com Yangkang & Wanglu @dnpushme Qihoo360 Qex Team
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <91.0.4472.101 | 91.0.4472.101 |
Google Chrome | <91.0.4472.101 | |
Red Hat Fedora | =33 | |
Red Hat Fedora | =34 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30548 has a high severity rating due to the potential for exploitation leading to remote code execution.
To mitigate CVE-2021-30548, update Google Chrome to version 91.0.4472.101 or later.
CVE-2021-30548 affects Google Chrome versions prior to 91.0.4472.101.
Yes, CVE-2021-30548 can be exploited through a crafted HTML page, potentially allowing remote attackers to exploit the vulnerability.
While there may not be a specific exploit publicly documented for CVE-2021-30548, the vulnerability poses a significant risk due to its nature.