CVE-2022-0300: Use after free in Text Input Method Editor
Use after free in Text Input Method Editor in Google Chrome on Android prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2022-0300?
CVE-2022-0300 is a vulnerability in Google Chrome on Android that allows a remote attacker to potentially exploit heap corruption through specific user interactions.
How severe is CVE-2022-0300?
CVE-2022-0300 has a severity rating of 8.8, classified as high.
Which software versions are affected by CVE-2022-0300?
Google Chrome on Android versions prior to 97.0.4692.99 are affected by CVE-2022-0300.
How can CVE-2022-0300 be exploited?
CVE-2022-0300 can be exploited by a remote attacker who convinces a user to engage in specific user interactions using a crafted HTML page.
Are all versions of Google Android affected by CVE-2022-0300?
No, Google Android itself is not vulnerable to CVE-2022-0300.