CVE-2022-0464: Use after free in Accessibility
Published Nov 14, 2021
·Updated
Use after free in Accessibility in Google Chrome prior to 98.0.4758.80 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via user interaction.
Credit
Zhihua Yao(KunLun Lab)
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.80
98.0.4758.80
Google Chrome<98.0.4758.80
Event History
Nov 14, 2021
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:51 AM
Data Sourced
via MITRE·12:51 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0464?
CVE-2022-0464 has a high severity rating due to its potential to allow remote attackers to exploit heap corruption.
2
How do I fix CVE-2022-0464?
To fix CVE-2022-0464, ensure that you update Google Chrome to version 98.0.4758.80 or later.
3
What type of vulnerability is CVE-2022-0464?
CVE-2022-0464 is classified as a use after free vulnerability in the Accessibility feature of Google Chrome.
4
Can CVE-2022-0464 be exploited remotely?
Yes, CVE-2022-0464 can potentially be exploited remotely if a user engages in specific interactions.
5
What software is affected by CVE-2022-0464?
CVE-2022-0464 affects Google Chrome versions prior to 98.0.4758.80.