Unrated severityNVD Advisory· Published Feb 9, 2021· Updated Aug 3, 2024
CVE-2021-21117
CVE-2021-21117
Description
Insufficient policy enforcement in Cryptohome in Google Chrome prior to 88.0.4324.96 allowed a local attacker to perform OS-level privilege escalation via a crafted file.
Affected products
6- osv-coords5 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.2pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP2
< 88.0.4324.96-lp151.2.171.1+ 4 more
- (no CPE)range: < 88.0.4324.96-lp151.2.171.1
- (no CPE)range: < 88.0.4324.96-lp152.2.66.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 88.0.4324.96-bp151.3.156.1
- (no CPE)range: < 88.0.4324.96-bp152.2.53.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- chromereleases.googleblog.com/2021/01/stable-channel-update-for-desktop_19.htmlmitrex_refsource_MISC
- crbug.com/1137179mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.