Unrated severityNVD Advisory· Published Feb 11, 2022· Updated Aug 2, 2024
CVE-2022-0108
CVE-2022-0108
Description
Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Affected products
36- osv-coords35 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.3%20NonFreepkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.4%20NonFreepkg:rpm/opensuse/webkit2gtk3&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/webkit2gtk3-soup2&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/webkit2gtk4&distro=openSUSE%20Leap%2015.4pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%207pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Proxy%204.2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Server%204.2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%209pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%209pkg:rpm/suse/webkit2gtk3-soup2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/webkit2gtk4&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP4
< 97.0.4692.71-bp153.2.54.1+ 34 more
- (no CPE)range: < 97.0.4692.71-bp153.2.54.1
- (no CPE)range: < 97.0.4692.71-1.1
- (no CPE)range: < 83.0.4254.27-lp153.2.33.1
- (no CPE)range: < 85.0.4341.28-lp154.2.5.1
- (no CPE)range: < 2.38.6-150400.4.39.1
- (no CPE)range: < 2.38.6-150400.4.39.1
- (no CPE)range: < 2.38.6-150400.4.39.1
- (no CPE)range: < 97.0.4692.71-bp153.2.54.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150000.3.139.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150400.4.39.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-150000.3.139.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-150000.3.139.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-150200.72.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-2.136.1
- (no CPE)range: < 2.38.6-150400.4.39.1
- (no CPE)range: < 2.38.6-150400.4.39.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5OKKVEUQAAGH3NHMX3WHWKRPYU4QFKTQ/mitrevendor-advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5PAGL5M2KGYPN3VEQCRJJE6NA7D5YG5X/mitrevendor-advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6QL5OGMSHRQ26FTYWZUXVNWB2VHOSVXK/mitrevendor-advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC7DMUX37BRCLAI4VPQYHDUVEGTNYN5A/mitrevendor-advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KQJB6ZPRLKV6WCMX2PRRRQBFAOXFBK6B/mitrevendor-advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MRWRAXAFR3JR7XCFWTHC2KALSZKWACCE/mitrevendor-advisory
- www.debian.org/security/2023/dsa-5396mitrevendor-advisory
- www.debian.org/security/2023/dsa-5397mitrevendor-advisory
- www.openwall.com/lists/oss-security/2023/04/21/3mitremailing-list
- lists.debian.org/debian-lts-announce/2023/05/msg00011.htmlmitremailing-list
- chromereleases.googleblog.com/2022/01/stable-channel-update-for-desktop.htmlmitre
- crbug.com/1248444mitre
News mentions
0No linked articles in our index yet.