First published: Mon Mar 07 2022(Updated: )
Heap buffer overflow in WebUI in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via specific input into DevTools.
Credit: chrome-cve-admin@google.com Leecraso 360 Alpha LabGuang Gong 360 Alpha Lab
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <100.0.4896.60 | |
Google Chrome | <100.0.4896.60 | 100.0.4896.60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-1143 is classified as a high-severity vulnerability due to its potential for remote exploitation.
To fix CVE-2022-1143, upgrade Google Chrome to version 100.0.4896.60 or later.
CVE-2022-1143 may allow a remote attacker to exploit heap corruption via user interaction with DevTools.
Google Chrome versions prior to 100.0.4896.60 are affected by CVE-2022-1143.
There are no known workarounds for CVE-2022-1143; updating is the recommended action.