CVE-2022-0798: Use after free in MediaStream
Use after free in MediaStream in Google Chrome prior to 99.0.4844.51 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2022-0798?
CVE-2022-0798 has a high severity rating due to its potential for heap corruption exploits by malicious Chrome extensions.
How do I fix CVE-2022-0798?
To mitigate CVE-2022-0798, update Google Chrome to version 99.0.4844.51 or later.
What platforms are affected by CVE-2022-0798?
CVE-2022-0798 primarily affects Google Chrome on all operating systems before version 99.0.4844.51.
What kind of attack can exploit CVE-2022-0798?
CVE-2022-0798 can be exploited by an attacker convincing a user to install a malicious extension that triggers the use after free vulnerability.
Is CVE-2022-0798 still a risk in the latest version of Chrome?
No, CVE-2022-0798 is not a risk in Google Chrome versions 99.0.4844.51 and later, as the vulnerability has been patched.