CVE-2022-2859: Use after free in Chrome OS Shell
Use after free in Chrome OS Shell in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via specific UI interactions.
Credit
Affected Software
Remediation
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2022-2859?
CVE-2022-2859 has a high severity rating as it allows potential remote exploitation through UI interactions.
How do I fix CVE-2022-2859?
To fix CVE-2022-2859, ensure you update Google Chrome to version 104.0.5112.101 or later.
What types of systems are affected by CVE-2022-2859?
CVE-2022-2859 affects Google Chrome versions prior to 104.0.5112.101 and Fedora 37.
What kind of attack does CVE-2022-2859 enable?
CVE-2022-2859 enables a remote attacker to exploit heap corruption through specific UI interactions.
Is CVE-2022-2859 specific to any operating system?
CVE-2022-2859 is specific to Google Chrome running on any operating system it supports, including Fedora.