VDB

CVE-2022-0343

CVE-2022-0343 PUBLISHED CVSS 3.299999952316284 LOW

A local attacker, as a different local user, may be able to send a HTTP request to 127.0.0.1:10000 after the user (typically a developer) manually invoked the ./tools/run-dev-server script. It is recommended to upgrade to any version beyond 24.2

EPSS 0.09% · 0.5th percentile

Risk Scores

CVSS 3.1
3.299999952316284
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N
EPSS Score
0.09%
0.5th percentile

Affected Products

VendorProductVersions
Google LLCPerfetto Dev Scriptsunspecified
googleperfetto0

Timeline

  • Mar 29, 2022 CVE Published
  • Mar 30, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Jul 10, 2022 EPSS Score
  • Aug 30, 2022 EPSS Score
  • Oct 20, 2022 EPSS Score
  • Dec 10, 2022 EPSS Score
  • Jan 30, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 21, 2023 EPSS Score
  • May 11, 2023 EPSS Score
  • Jul 1, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›