CVE-2022-0977: Use after free in Browser UI
Use after free in Browser UI in Google Chrome on Chrome OS prior to 99.0.4844.74 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.
Credit
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2022-0977?
CVE-2022-0977 has a high severity rating due to its potential for exploitation via user interaction.
How do I fix CVE-2022-0977?
To address CVE-2022-0977, update Google Chrome to version 99.0.4844.74 or later.
What kind of vulnerability is CVE-2022-0977?
CVE-2022-0977 is a use after free vulnerability affecting the Browser UI in Google Chrome.
Who is affected by CVE-2022-0977?
Users of Google Chrome on Chrome OS prior to version 99.0.4844.74 are affected by CVE-2022-0977.
What can attackers do with CVE-2022-0977?
Attackers can potentially exploit CVE-2022-0977 to cause heap corruption through a specially crafted HTML page.