HIGH

CVE-2021-30632

Google Chrome 2021-10-08 CVSS v3.1
CVSS
8.8
KEV

Description

Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Summary dbcve.org

Out-of-bounds write vulnerability in the V8 JavaScript engine in Google Chrome versions prior to 93.0.4577.82. A remote attacker can exploit this via a crafted HTML page to perform heap corruption, potentially achieving arbitrary code execution.

Mitigation

Update Google Chrome to version 93.0.4577.82 or later. In enterprise environments, use group policy or software distribution tools to ensure widespread deployment.

Proof of Concept

Weakness (CWE)

CWE-787 Out-of-bounds Write

EPSS Score

63.19%
Probability of exploitation in next 30 days
99.2th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE