CVE-2021-30556: Use after free in WebAudio
Published May 24, 2021
·Updated
Use after free in WebAudio in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Yangkang@@dnpushme(360 ATA)
Affected Software
4 affected componentsFixes available
Google Chrome<91.0.4472.114
91.0.4472.114
Google Chrome<91.0.4472.114
fedoraproject fedora=33
fedoraproject fedora=34
Event History
May 24, 2021
CVE Published
12:00 AM
Jul 2, 2021
CVE Published
via MITRE·06:45 PM
Data Sourced
via MITRE·06:45 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2021-30556?
CVE-2021-30556 has a high severity rating due to the potential for remote exploitation leading to heap corruption.
2
How do I fix CVE-2021-30556?
To fix CVE-2021-30556, update Google Chrome to version 91.0.4472.114 or later.
3
Which versions of Google Chrome are affected by CVE-2021-30556?
Google Chrome versions prior to 91.0.4472.114 are affected by CVE-2021-30556.
4
Can CVE-2021-30556 be exploited remotely?
Yes, CVE-2021-30556 allows potential remote exploitation through a crafted HTML page.
5
What is the impact of CVE-2021-30556?
The impact of CVE-2021-30556 may include arbitrary code execution due to heap corruption in the WebAudio component.