First published: Wed Sep 15 2021(Updated: )
Google Chromium Intents contains an improper input validation vulnerability that allows a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.
Credit: chrome-cve-admin@google.com Clement Lecigne Google Threat Analysis GroupNeel Mehta Google Threat Analysis Group Google Threat Analysis GroupMaddie Stone Google Threat Analysis Group chrome-cve-admin@google.com chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/chromium | <=90.0.4430.212-1~deb10u1 | 116.0.5845.180-1~deb11u1 118.0.5993.70-1~deb11u1 116.0.5845.180-1~deb12u1 118.0.5993.70-1~deb12u1 118.0.5993.70-1 |
Google Chrome | <95.0.4638.69 | |
Google Android | ||
Fedoraproject Fedora | =34 | |
Debian Debian Linux | =10.0 | |
Debian Debian Linux | =11.0 | |
Google Chromium Intents | ||
Google Chrome | <95.0.4638.69 | 95.0.4638.69 |
All of | ||
<95.0.4638.69 | ||
=34 | ||
=10.0 | ||
=11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-38000 is a vulnerability in Google Chromium that allows a remote attacker to browse to a malicious URL via a crafted HTML page.
CVE-2021-38000 affects web browsers that utilize Chromium, including Google Chrome and Microsoft Edge.
CVE-2021-38000 has a severity rating of 6.1, which is considered medium.
To fix CVE-2021-38000, ensure that your web browser, such as Google Chrome or Microsoft Edge, is updated to the latest version provided by the vendor.
You can find more information about CVE-2021-38000 in the references provided: [link1](https://security-tracker.debian.org/tracker/CVE-2021-38000), [link2](https://chromereleases.googleblog.com/2021/10/stable-channel-update-for-desktop_28.html), [link3](https://crbug.com/1249962).