CVE-2022-0106 An attacker who convinced a user to perform a specific user gesture can exploit heap corruption in Google Chrome after March 2017 update.
This issue has been fixed by removing the user gesture requirement. Double clicking on the URL of a Google Docs or Sheet link in Autofill
CVE-2022-0103 An attacker could exploit heap corruption in SwiftShader in Google Chrome prior to 97.0.4692.71 to get system privileges.
CVE-2017-15412 is resolved in Chrome 97.0.4683.0 or later. Note that Tenable Network Security has extracted the preceding description block directly
CVE-2022-0109 Autofill in Chrome prior to 97.0.4692.71 allowed a remote attacker to obtain sensitive information.
Google has patched this vulnerability in Google Chrome Stable channel. Users are advised to update their installations as soon as possible. In addition to that,
CVE-2022-0100 Heap buffer overflow in Media streams API in Chrome prior to 97.0.4692.71 could allow a remote attacker to exploit heap corruption.
Note that this issue was fixed in later releases of Google Chrome. Google Chrome prior to 75.0.3770.80 did not properly handle objects
CVE-2022-0120 Inappropriate implementation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially leak cross-origin data.
This issue was fixed in Google Chrome 97.0.4692.69, released on December 11th, 2017. Google Chrome prior to 97.0.4683.0, released
Episode
00:00:00
00:00:00