Use after free in Chromoting in Google Chrome on Linux prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 148.0.7778.96, 148.0.7778.120 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| chrome | cert_advisory | 90% | |
| linux | linux_kernel | cve_cpe | 95% |
Updated vendor to Microsoft and product to Edge, marked exploit as available, and noted no specific patch version available.
Updated description with technical details, added new affected version 148.0.7778.120, changed severity to CRITICAL, and updated patch available version.
Updated description with more technical detail, changed severity to CRITICAL, and noted that no exploit is available.
Initial creation