First published: Mon Oct 18 2021(Updated: )
Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
Credit: chrome-cve-admin@google.com chrome-cve-admin@google.com Jeonghoon Shin Theori
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <96.0.4664.93 | |
Google Chrome | <96.0.4664.93 | 96.0.4664.93 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-4317 is a vulnerability in ANGLE in Google Chrome that allowed a remote attacker to perform arbitrary read/write via a crafted HTML page.
The severity of CVE-2021-4317 is High, with a severity value of 8.8.
To fix CVE-2021-4317, update your Google Chrome to version 96.0.4664.93 or later.
You can find more information about CVE-2021-4317 in the following references: [Reference 1](https://chromereleases.googleblog.com/2021/12/stable-channel-update-for-desktop.html), [Reference 2](https://crbug.com/1260783), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PQKT7EGDD2P3L7S3NXEDDRCPK4NNZNWJ/).
The Common Weakness Enumeration (CWE) for CVE-2021-4317 is CWE-416.