CVE-2022-0453: Use after free in Reader Mode
Published Jan 6, 2022
·Updated
Use after free in Reader Mode in Google Chrome prior to 98.0.4758.80 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Credit
Rong Jian(VRI)
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.80
98.0.4758.80
Google Chrome<98.0.4758.80
Event History
Jan 6, 2022
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:50 AM
Data Sourced
via MITRE·12:50 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0453?
CVE-2022-0453 is classified as a high severity vulnerability.
2
How do I fix CVE-2022-0453?
To fix CVE-2022-0453, update Google Chrome to version 98.0.4758.80 or later.
3
What type of exploitation does CVE-2022-0453 enable?
CVE-2022-0453 enables potential exploitation of heap corruption via a crafted HTML page.
4
Which versions of Google Chrome are affected by CVE-2022-0453?
Google Chrome versions prior to 98.0.4758.80 are affected by CVE-2022-0453.
5
Who can exploit CVE-2022-0453 and how?
A remote attacker who has compromised the renderer process can exploit CVE-2022-0453.