CVE-2021-30551: Type Confusion in V8
Google Chromium V8 Engine contains a type confusion vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.
Other sources
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Google Chrome (Trace Event)to a version that resolves this vulnerability.Fixed in 91.0.4472.101
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2021-30551?
CVE-2021-30551 is a type confusion vulnerability in the Google Chromium V8 Engine.
How does CVE-2021-30551 affect web browsers?
CVE-2021-30551 affects web browsers that utilize Chromium, including Google Chrome and Microsoft Edge.
What is the severity of CVE-2021-30551?
The severity of CVE-2021-30551 is rated as high with a CVSS score of 8.8.
How can an attacker exploit CVE-2021-30551?
An attacker can potentially exploit CVE-2021-30551 by crafting a malicious HTML page to trigger heap corruption.
Where can I find more information about CVE-2021-30551?
You can find more information about CVE-2021-30551 at the following references: [link1], [link2], [link3].