CVE-2022-0795: Type Confusion in Blink Layout
Published Dec 27, 2021
·Updated
Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
0x74960
Affected Software
2 affected componentsFixes available
Google Chrome<99.0.4844.51
99.0.4844.51
Google Chrome<99.0.4844.51
Event History
Dec 27, 2021
CVE Published
12:00 AM
Apr 5, 2022
CVE Published
via MITRE·12:25 AM
Data Sourced
via MITRE·12:25 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0795?
CVE-2022-0795 has a high severity rating due to its potential for remote exploitation through heap corruption.
2
How do I fix CVE-2022-0795?
To fix CVE-2022-0795, update Google Chrome to version 99.0.4844.51 or later.
3
What type of vulnerability is CVE-2022-0795?
CVE-2022-0795 is a type confusion vulnerability in the Blink layout engine of Google Chrome.
4
Can CVE-2022-0795 be exploited remotely?
Yes, CVE-2022-0795 can be exploited remotely by an attacker through a crafted HTML page.
5
What software versions are affected by CVE-2022-0795?
CVE-2022-0795 affects Google Chrome versions prior to 99.0.4844.51.