Unrated severityNVD Advisory· Published Feb 9, 2021· Updated Aug 3, 2024
CVE-2021-21121
CVE-2021-21121
Description
Use after free in Omnibox in Google Chrome on Linux prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
Affected products
8- osv-coords7 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.2pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/libqt5-qtwebengine&distro=openSUSE%20Leap%2015.2pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP2pkg:rpm/suse/libqt5-qtwebengine&distro=SUSE%20Package%20Hub%2015%20SP2
< 88.0.4324.96-lp151.2.171.1+ 6 more
- (no CPE)range: < 88.0.4324.96-lp151.2.171.1
- (no CPE)range: < 88.0.4324.96-lp152.2.66.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 5.15.3-lp152.3.3.4
- (no CPE)range: < 88.0.4324.96-bp151.3.156.1
- (no CPE)range: < 88.0.4324.96-bp152.2.53.1
- (no CPE)range: < 5.15.3-bp152.3.3.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- chromereleases.googleblog.com/2021/01/stable-channel-update-for-desktop_19.htmlmitrex_refsource_MISC
- crbug.com/1161143mitrex_refsource_MISC
- msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-21121mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.