VDB
DEBIAN-CVE-2022-3890
DEBIAN-CVE-2022-3890
PUBLISHED
CVSS 9.600000381469727 CRITICAL
Heap buffer overflow in Crashpad in Google Chrome on Android prior to 107.0.5304.106 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Risk Scores
CVSS 3.1
9.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:14 | chromium | 0, 0, 0 |
| Debian:11 | chromium | 90.0.4430.212-1, 98.0.4758.102-1, 101.0.4951.54-1 |
| Debian:13 | chromium | 0, 0, 0 |
| Debian:12 | chromium | 0, 0, 0 |
Timeline
- Nov 9, 2022 CVE Published
- Apr 28, 2026 CVE Updated