CVE-2022-2481: Use after free in Views
Published Jul 4, 2022
·Updated
Use after free in Views in Google Chrome prior to 103.0.5060.134 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via UI interaction.
Credit
YoungJoo Lee@@ashuu_lee(CompSecLab at Seoul National University)
Affected Software
2 affected componentsFixes available
Google Chrome<103.0.5060.134
103.0.5060.134
Google Chrome<103.0.5060.134
Event History
Jul 4, 2022
CVE Published
12:00 AM
Jul 28, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-2481?
CVE-2022-2481 is considered a high-severity vulnerability that could allow for heap corruption.
2
How do I fix CVE-2022-2481?
To fix CVE-2022-2481, update Google Chrome to version 103.0.5060.134 or later.
3
Who is affected by CVE-2022-2481?
CVE-2022-2481 affects all users of Google Chrome versions prior to 103.0.5060.134.
4
What type of vulnerability is CVE-2022-2481?
CVE-2022-2481 is a use after free vulnerability that can lead to potential exploitation via user interaction.
5
What can an attacker achieve with CVE-2022-2481?
An attacker could potentially exploit CVE-2022-2481 to achieve arbitrary code execution through crafted UI interactions.