First published: Tue Dec 21 2021(Updated: )
Use after free in Optimization Guide in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.
Credit: chrome-cve-admin@google.com Samet Bekmezci @sametbekmezci
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <97.0.4692.99 | |
Google Chrome | <97.0.4692.99 | 97.0.4692.99 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-0307 has a high severity rating due to the potential for heap corruption exploitation.
To fix CVE-2022-0307, update Google Chrome to version 97.0.4692.99 or later.
CVE-2022-0307 is a use after free vulnerability affecting the Optimization Guide in Google Chrome.
Yes, CVE-2022-0307 can potentially be exploited remotely if a user interacts with a crafted HTML page.
The impact of CVE-2022-0307 includes possible heap corruption, leading to crashes or arbitrary code execution.