CVE-2021-30548: Use after free in Loader
Published May 18, 2021
·Updated
Use after free in Loader in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Yangkang & Wanglu@@dnpushme(Qihoo360 Qex Team)
Affected Software
4 affected componentsFixes available
Google Chrome<91.0.4472.101
91.0.4472.101
Google Chrome<91.0.4472.101
fedoraproject fedora=33
fedoraproject fedora=34
Event History
May 18, 2021
CVE Published
12:00 AM
Jun 15, 2021
CVE Published
via MITRE·09:40 PM
Data Sourced
via MITRE·09:40 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2021-30548?
CVE-2021-30548 has a high severity rating due to the potential for exploitation leading to remote code execution.
2
How do I fix CVE-2021-30548?
To mitigate CVE-2021-30548, update Google Chrome to version 91.0.4472.101 or later.
3
Which versions of Google Chrome are affected by CVE-2021-30548?
CVE-2021-30548 affects Google Chrome versions prior to 91.0.4472.101.
4
Can CVE-2021-30548 be exploited through a regular website?
Yes, CVE-2021-30548 can be exploited through a crafted HTML page, potentially allowing remote attackers to exploit the vulnerability.
5
Is there a known exploit for CVE-2021-30548?
While there may not be a specific exploit publicly documented for CVE-2021-30548, the vulnerability poses a significant risk due to its nature.