CVE-2021-30560 PUBLISHED

Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS 0.08% · 24.4th percentile

Risk Scores

EPSS Score
0.08%
24.4th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSlibxslt1.1.34-4build2, 0, 1.1.34-4
Ubuntu:Pro:14.04:LTSlibxslt1.1.28-2build1, 0, 1.1.28-2
Ubuntu:Pro:16.04:LTSlibxslt1.1.28-2.1, 1.1.28-2.1ubuntu0.3, 1.1.28-2build2
Ubuntu:20.04:LTSlibxslt1.1.33-0ubuntu1, 0, 1.1.33-0ubuntu2
Ubuntu:18.04:LTSlibxslt0, 1.1.29-2.1ubuntu1, 1.1.29-4
Ubuntu:18.04:LTSchromium-browser70.0.3538.67-0ubuntu0.18.04.1, 70.0.3538.77-0ubuntu0.18.04.1, 70.0.3538.110-0ubuntu0.18.04.1

Timeline

References

Open in Interactive Console →