First published: Thu Jul 21 2022(Updated: )
Heap buffer overflow in Window Manager in Google Chrome on Chrome OS, Lacros prior to 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via crafted UI interactions.
Credit: Khalil Zhani chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <105.0.5195.52 | |
Google Chrome OS | ||
Google Linux And Chrome Os | ||
Fedoraproject Fedora | =37 | |
Google Chrome | <105.0.5195.52 | 105.0.5195.52 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-3052 is a heap buffer overflow vulnerability in the Window Manager component of Google Chrome on Chrome OS, Lacros prior to version 105.0.5195.52.
CVE-2022-3052 has a severity score of 8.8, which is considered high.
CVE-2022-3052 allows a remote attacker to potentially exploit heap corruption in Google Chrome on Chrome OS, Lacros, prior to version 105.0.5195.52, by convincing a user to engage in specific UI interactions.
No, Google Chrome OS is not affected by CVE-2022-3052.
To fix CVE-2022-3052, users should update Google Chrome on Chrome OS, Lacros to version 105.0.5195.52 or later.