CVE-2021-30552: Use after free in Extensions
Use after free in Extensions in Google Chrome prior to 91.0.4472.101 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-30552?
CVE-2021-30552 has a high severity rating due to its potential to allow attackers to exploit heap corruption.
How do I fix CVE-2021-30552?
To fix CVE-2021-30552, update Google Chrome to version 91.0.4472.101 or later.
What platforms are affected by CVE-2021-30552?
CVE-2021-30552 affects Google Chrome on various operating systems, including Fedora versions 33 and 34.
What type of vulnerability is CVE-2021-30552?
CVE-2021-30552 is classified as a use-after-free vulnerability in the Extensions component of Google Chrome.
What could an attacker do with CVE-2021-30552?
An attacker could exploit CVE-2021-30552 to execute arbitrary code on a victim's machine after convincing them to install a malicious extension.