CVE-2021-43221: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Published Nov 19, 2021
·Updated
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Affected Software
3 affected componentsFixes available
Microsoft Edge Chromium<96.0.1054.29
Microsoft Edge<96.0.1954.29
Microsoft Edge (Chromium-based)<96.0 1954.29
96.0 1954.29
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 96.0 1954.29
Event History
Nov 19, 2021
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:00 AM
DescriptionAffected Software
Nov 24, 2021
CVE Published
via MITRE·01:05 AM
Data Sourced
via MITRE·01:05 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-43221?
CVE-2021-43221 has a severity rating of critical due to its potential for remote code execution.
2
How do I fix CVE-2021-43221?
To resolve CVE-2021-43221, users should update Microsoft Edge (Chromium-based) to version 96.0.1054.30 or later.
3
What types of systems are affected by CVE-2021-43221?
CVE-2021-43221 affects all versions of Microsoft Edge (Chromium-based) prior to 96.0.1054.30.
4
Can CVE-2021-43221 be exploited by attackers?
Yes, CVE-2021-43221 can be exploited by attackers through malicious web pages that trigger remote code execution.
5
Is there a workaround for CVE-2021-43221?
Currently, there are no known workarounds for CVE-2021-43221, and users are advised to update their browser.