CVE-2022-0468: Use after free in Payments
Published Sep 24, 2021
·Updated
Use after free in Payments in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Krace
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.80
98.0.4758.80
Google Chrome<98.0.4758.80
Event History
Sep 24, 2021
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:51 AM
Data Sourced
via MITRE·12:51 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0468?
CVE-2022-0468 has a medium severity rating due to the potential for remote code execution.
2
How do I fix CVE-2022-0468?
To fix CVE-2022-0468, update Google Chrome to version 98.0.4758.80 or later.
3
What does CVE-2022-0468 affect?
CVE-2022-0468 affects Google Chrome versions prior to 98.0.4758.80.
4
Can CVE-2022-0468 be exploited remotely?
Yes, CVE-2022-0468 can potentially be exploited remotely via a crafted HTML page.
5
What is a use after free vulnerability in CVE-2022-0468?
A use after free vulnerability in CVE-2022-0468 means that the application may continue to use a memory location after it has been freed, which can lead to heap corruption.