Vulnerability CVE-2022-4135: Information

Description

Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

Severity: CRITICAL (9.6) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Published: Nov. 25, 2022
Modified: Feb. 15, 2024
Error type identifier: CWE-787

Fixed packages

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
      End excliding
      107.0.5304.121

      Configuration 2

      cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*:*
      End excliding
      107.0.1418.62

      cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
      End excliding
      107.0.5304.150