Use after free in Payments in Google Chrome on Android prior to 149.0.7827.201 allowed a local attacker to potentially exploit heap corruption via physical access to the device. (Chromium security severity: High)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 149.0.7827.201 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| chrome | cert_advisory | 90% | |
| android | cve_cpe | 95% |
Updated severity to CRITICAL, added new affected version 149.0.7827.197, and marked the vulnerability as actively exploited.
Initial creation