CVE-2021-30625: Use after free in Selection API
Use after free in Selection API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who convinced the user the visit a malicious website to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-30625?
CVE-2021-30625 has been classified as a high-severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2021-30625?
To fix CVE-2021-30625, update Google Chrome to version 93.0.4577.82 or later.
What software is affected by CVE-2021-30625?
CVE-2021-30625 affects Google Chrome versions prior to 93.0.4577.82, and Fedora 33 and 35.
Can CVE-2021-30625 be exploited remotely?
Yes, CVE-2021-30625 can potentially be exploited by remote attackers through a crafted HTML page.
What is a use after free vulnerability in the context of CVE-2021-30625?
A use after free vulnerability, as seen in CVE-2021-30625, occurs when a program attempts to use memory after it has been freed, leading to heap corruption.