CVE-2022-1312: Use after free in storage
Use after free in storage in Google Chrome prior to 100.0.4896.88 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
Credit
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2022-1312?
CVE-2022-1312 has a high severity level as it allows a potential sandbox escape through a malicious Chrome Extension.
How do I fix CVE-2022-1312?
To fix CVE-2022-1312, users should update Google Chrome to version 100.0.4896.88 or later.
What type of attack does CVE-2022-1312 involve?
CVE-2022-1312 involves a use-after-free vulnerability which can be exploited through malicious Chrome Extensions.
Which versions of Google Chrome are affected by CVE-2022-1312?
Google Chrome versions prior to 100.0.4896.88 are affected by CVE-2022-1312.
What is the potential impact of CVE-2022-1312 on users?
The potential impact of CVE-2022-1312 includes unauthorized access or execution of arbitrary code due to sandbox escape.