CVE-2021-37985: Use after free in V8
Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow for connection to debugger to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-37985?
CVE-2021-37985 has a high severity rating due to its potential for heap corruption and remote exploitation.
How do I fix CVE-2021-37985?
To fix CVE-2021-37985, upgrade Chrome to version 95.0.4638.54 or later, or update the affected version of Chromium on your system.
Which versions of Google Chrome are affected by CVE-2021-37985?
CVE-2021-37985 affects Google Chrome versions prior to 95.0.4638.54.
Can CVE-2021-37985 be exploited remotely?
Yes, CVE-2021-37985 can potentially be exploited remotely if a user is tricked into allowing a connection to a debugger.
What is the primary impact of CVE-2021-37985?
The primary impact of CVE-2021-37985 is heap corruption, which can lead to arbitrary code execution.