CVE-2022-0461: Policy bypass in COOP
Published Oct 5, 2021
·Updated
Policy bypass in COOP in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to bypass iframe sandbox via a crafted HTML page.
Credit
NDevTK
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.80
98.0.4758.80
Google Chrome<98.0.4758.80
Event History
Oct 5, 2021
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:51 AM
Data Sourced
via MITRE·12:51 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is CVE-2022-0461?
CVE-2022-0461 is a vulnerability in Google Chrome that allowed a remote attacker to bypass iframe sandbox through a crafted HTML page.
2
How does CVE-2022-0461 affect Google Chrome?
CVE-2022-0461 affects Google Chrome versions before 98.0.4758.80.
3
What is the severity level of CVE-2022-0461?
The severity level of CVE-2022-0461 is medium, with a CVSS score of 6.5.
4
How can I fix CVE-2022-0461?
To fix CVE-2022-0461, update Google Chrome to version 98.0.4758.80 or later.
5
Where can I find more information about CVE-2022-0461?
You can find more information about CVE-2022-0461 on the Google Chrome Releases Blog and the Chromium Bug Tracker.