First published: Mon May 24 2021(Updated: )
Use after free in WebAudio in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit: chrome-cve-admin@google.com Yangkang @dnpushme 360 ATA
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <91.0.4472.114 | |
Fedoraproject Fedora | =33 | |
Fedoraproject Fedora | =34 | |
Google Chrome | <91.0.4472.114 | 91.0.4472.114 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30556 has a high severity rating due to the potential for remote exploitation leading to heap corruption.
To fix CVE-2021-30556, update Google Chrome to version 91.0.4472.114 or later.
Google Chrome versions prior to 91.0.4472.114 are affected by CVE-2021-30556.
Yes, CVE-2021-30556 allows potential remote exploitation through a crafted HTML page.
The impact of CVE-2021-30556 may include arbitrary code execution due to heap corruption in the WebAudio component.