CVE-2022-0467: Inappropriate implementation in Pointer Lock
Published Aug 13, 2021
·Updated
Inappropriate implementation in Pointer Lock in Google Chrome on Windows prior to 98.0.4758.80 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Credit
Alesandro Ortiz
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.80
98.0.4758.80
Google Chrome<98.0.4758.80
Remediation
Patch Available
Event History
Aug 13, 2021
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:51 AM
Data Sourced
via MITRE·12:51 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-0467.
2
What is the severity of CVE-2022-0467?
The severity of CVE-2022-0467 is high with a CVSS score of 8.8.
3
How does CVE-2022-0467 affect Google Chrome?
CVE-2022-0467 affects Google Chrome on Windows prior to version 98.0.4758.80.
4
How can a remote attacker exploit CVE-2022-0467?
A remote attacker can exploit CVE-2022-0467 by bypassing navigation restrictions through a crafted HTML page.
5
Is there a fix for CVE-2022-0467?
Yes, the fix for CVE-2022-0467 is included in Google Chrome version 98.0.4758.80 and later.