CVE-2022-0605 PUBLISHED

Reported by Chrome · Published April 4, 2022

Use after free in Webstore API in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to install a malicious extension and convinced a user to enage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.

Affected Products

VendorProductVersions
GoogleChromeunspecified
GoogleChromeunspecified

Timeline

References

Open in Interactive Console →