CVE-2021-30547Out-of-bounds Write in Google Chrome

CWE-787Out-of-bounds Write13 documents9 sources
Severity
8.8HIGHNVD
OSV5.9
EPSS
2.5%
top 14.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 15
Latest updateMay 24

Description

Out of bounds write in ANGLE in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages13 packages

CVEListV5google/chromeunspecified91.0.4472.101
NVDgoogle/chrome< 91.0.4472.101
debiandebian/firefox< chromium 93.0.4577.82-1 (bookworm)
NVDmozilla/firefox< 97.0

Also affects: Debian Linux 10.0, 9.0, Fedora 34

🔴Vulnerability Details

3
GHSA
GHSA-h3c6-pc9c-gf82: Out of bounds write in ANGLE in Google Chrome prior to 912022-05-24
OSV
thunderbird vulnerabilities2021-08-31
OSV
CVE-2021-30547: Out of bounds write in ANGLE in Google Chrome prior to 912021-06-15

📋Vendor Advisories

9
Ubuntu
Thunderbird vulnerabilities2021-08-31
Ubuntu
Firefox vulnerabilities2021-07-16
Chrome
Stable Channel Update for Desktop: CVE-2021-305472021-06-09
Red Hat
chromium-browser: Out of bounds write in ANGLE2021-06-09
Microsoft
Chromium: CVE-2021-30547 Out of bounds write in ANGLE2021-06-08