CVE-2022-0608: Integer overflow in Mojo
Published Nov 16, 2021
·Updated
Integer overflow in Mojo in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Sergei Glazunov(Google Project Zero)
Affected Software
2 affected componentsFixes available
Google Chrome<98.0.4758.102
98.0.4758.102
Google Chrome<98.0.4758.102
Event History
Nov 16, 2021
CVE Published
12:00 AM
Apr 4, 2022
CVE Published
via MITRE·11:55 PM
Data Sourced
via MITRE·11:55 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0608?
CVE-2022-0608 has been classified as a high severity vulnerability due to its potential for heap corruption exploitation.
2
How do I fix CVE-2022-0608?
To fix CVE-2022-0608, update Google Chrome to version 98.0.4758.102 or later.
3
What type of vulnerability is CVE-2022-0608?
CVE-2022-0608 is an integer overflow vulnerability affecting the Mojo component in Google Chrome.
4
Who is affected by CVE-2022-0608?
Users of Google Chrome versions prior to 98.0.4758.102 are affected by CVE-2022-0608.
5
Can CVE-2022-0608 be exploited remotely?
Yes, CVE-2022-0608 can potentially be exploited remotely via a crafted HTML page.