CVE-2022-1308: Use after free in BFCache
Published Dec 28, 2021
·Updated
Use after free in BFCache in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Credit
Samet Bekmezci@@sametbekmezci
Affected Software
2 affected componentsFixes available
Google Chrome<100.0.4896.88
100.0.4896.88
Google Chrome<100.0.4896.88
Remediation
Patch Available
Event History
Dec 28, 2021
CVE Published
12:00 AM
Jul 25, 2022
CVE Published
via MITRE·01:40 PM
Data Sourced
via MITRE·01:40 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-1308?
CVE-2022-1308 is considered to have a high severity due to the potential exploitation of heap corruption.
2
How do I fix CVE-2022-1308?
To fix CVE-2022-1308, upgrade Google Chrome to version 100.0.4896.88 or later.
3
Who is affected by CVE-2022-1308?
CVE-2022-1308 affects users of Google Chrome versions prior to 100.0.4896.88.
4
What type of vulnerability is CVE-2022-1308?
CVE-2022-1308 is classified as a use after free vulnerability.
5
Can CVE-2022-1308 be exploited remotely?
Yes, CVE-2022-1308 can potentially be exploited by a remote attacker via a crafted HTML page.