KLA12060
Multiple vulnerabilities in Google Chrome

Обновлено: 04/02/2021
Дата обнаружения
02/02/2021
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in Google Chrome. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service.

Below is a complete list of vulnerabilities:

  1. Use after free vulnerability in Payments can be exploited to cause denial of service and execute arbitrary code.
  2. Heap buffer overflow vulnerability in Extensions can be exploited to cause denial of service.
  3. Heap buffer overflow vulnerability in Tab Groups can be exploited to cause denial of service.
  4. Use after free vulnerability in Fonts can be exploited to cause denial of service and execute arbitrary code.
  5. Implementation vulnerability in Skia can be exploited to potentially cause denial of service.
  6. Use after free vulnerability in Navigation can be exploited to cause denial of service and execute arbitrary code.
Пораженные продукты

Google Chrome earlier than 88.0.4324.146

Решение

Update to the latest version
Download Google Chrome

Первичный источник обнаружения
Stable Channel Update for Desktop
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
Google Chrome
CVE-IDS
CVE-2021-211420.0Unknown
CVE-2021-211430.0Unknown
CVE-2021-211440.0Unknown
CVE-2021-211450.0Unknown
CVE-2021-211470.0Unknown
CVE-2021-211460.0Unknown