First published: Sun Jan 09 2022(Updated: )
Use after free in Shopping Cart in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap corruption via standard feature user interaction.
Credit: chrome-cve-admin@google.com Wei Yuan MoyunSec VLab
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <100.0.4896.60 | |
Google Chrome | <100.0.4896.60 | 100.0.4896.60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-1135 has a high severity rating due to its potential to exploit heap corruption.
To fix CVE-2022-1135, update Google Chrome to version 100.0.4896.60 or later.
CVE-2022-1135 affects all versions of Google Chrome prior to 100.0.4896.60.
CVE-2022-1135 requires user interaction for potential exploitation.
CVE-2022-1135 is classified as a use after free vulnerability in the Shopping Cart feature of Google Chrome.