CVE-2022-0975: Use after free in ANGLE
Published Feb 9, 2022
·Updated
Use after free in ANGLE in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
SeongHwan Park (SeHwa)
Affected Software
2 affected componentsFixes available
Google Chrome<99.0.4844.74
99.0.4844.74
Google Chrome<99.0.4844.74
Remediation
Patch Available
Event History
Feb 9, 2022
CVE Published
12:00 AM
Jul 21, 2022
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0975?
CVE-2022-0975 has been classified as a high severity vulnerability due to its potential to allow remote exploitation through heap corruption.
2
How do I fix CVE-2022-0975?
To fix CVE-2022-0975, update Google Chrome to version 99.0.4844.74 or later.
3
What impact does CVE-2022-0975 have on users?
CVE-2022-0975 can lead to arbitrary code execution if a user visits a maliciously crafted HTML page.
4
Which versions of Google Chrome are affected by CVE-2022-0975?
Google Chrome versions prior to 99.0.4844.74 are affected by CVE-2022-0975.
5
Is CVE-2022-0975 a zero-day vulnerability?
No, CVE-2022-0975 is not categorized as a zero-day; it is publicly disclosed and has been patched.