VDB
CVE-2022-1364
CVE-2022-1364
PUBLISHED
KEV
Es existiert eine Schwachstelle in Google Chrome. Die Schwachstelle ist auf einen Type-Confusion-Fehler in "V8" zurückzuführen. Ein entfernter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um beliebigen Programmcode auszuführen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.
EPSS 17.51% · 95.2th percentile
Risk Scores
EPSS Score
17.51%
95.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | |
| Open Source | Open Source Kibana < 7.17.8 | |
| Gentoo | Gentoo Linux | |
| Open Source | Open Source Kibana < 8.5.0 |
Exploit Intelligence
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- A1Lin/cve-2022-1364 (github-poc-repo)
- Proof of concept for CVE-2022-1364 against Alibaba's UC Browser (github-poc-repo)
…and 140 more exploits
Timeline
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 21, 1970 VulnCheck XDB Entry
- Jun 8, 2021 VulnCheck KEV Exploitation
- Apr 14, 2022 PoC Published
- Apr 15, 2022 CISA KEV Added
- Apr 18, 2022 CVE Published
- Apr 19, 2022 PoC Published
- Jul 27, 2022 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-1138.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-1138 advisory
- https://discuss.elastic.co/t/7-17-8-8-5-0-security-update/320920 advisory
- http://chromereleases.googleblog.com/2022/04/stable-channel-update-for-desktop_14.html advisory
- https://chromereleases.googleblog.com/2022/04/long-term-support-channel-update_15.html advisory
- https://www.debian.org/security/2022/dsa-5121 advisory
- https://security.gentoo.org/glsa/202208-25 advisory