CVE-2022-4921: Use after free in Accessibility
Published Oct 25, 2021
·Updated
Use after free in Accessibility in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: Low)
Credit
Khalil Zhani
Affected Software
2 affected componentsFixes available
Google Chrome<99.0.4844.51
99.0.4844.51
Google Chrome<99.0.4844.51
Event History
Oct 25, 2021
CVE Published
12:00 AM
Jul 28, 2023
CVE Published
via MITRE·11:26 PM
Data Sourced
via MITRE·11:26 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-4921?
The severity of CVE-2022-4921 is classified as Low.
2
How do I fix CVE-2022-4921?
To fix CVE-2022-4921, update Google Chrome to version 99.0.4844.51 or later.
3
What type of vulnerability is CVE-2022-4921?
CVE-2022-4921 is a use after free vulnerability affecting the Accessibility feature in Google Chrome.
4
What could an attacker do with CVE-2022-4921?
An attacker could perform arbitrary read/write operations via a crafted HTML page if the user engages in specific UI gestures.
5
Which versions of Google Chrome are affected by CVE-2022-4921?
Google Chrome versions prior to 99.0.4844.51 are affected by CVE-2022-4921.