VYPR
High severity8.8NVD Advisory· Published Jan 2, 2023· Updated Jun 17, 2026

CVE-2022-2743

CVE-2022-2743

Description

Integer overflow in Window Manager in Google Chrome on Chrome OS and Lacros prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific UI interactions to perform an out of bounds memory write via crafted UI interactions. (Chrome security severity: High)

Affected products

7
  • Google/Chrome3 versions
    cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*range: <104.0.5112.79
    • (no CPE)range: <104.0.5112.79
    • (no CPE)range: unspecified
  • Google/ChromeOS2 versions
    cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:*
    • (no CPE)range: <104.0.5112.79
  • cpe:2.3:o:google:linux_and_chrome_os:-:*:*:*:*:*:*:*
  • Google/Lacrosllm-fuzzy
    Range: <104.0.5112.79

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.