Description
Use after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Remediation
References
https://crbug.com/1186287
https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop_12.html
https://www.debian.org/security/2021/dsa-4886
https://security.gentoo.org/glsa/202104-08
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N52OWF4BAP3JNK2QYGU3Q6QUVDZDCIMQ/
Related Vulnerabilities
CVE-2022-21680 Vulnerability in npm package marked
CVE-2022-25167 Vulnerability in maven package org.apache.flume.flume-ng-sources:flume-jms-source
CVE-2020-12827 Vulnerability in npm package mjml
CVE-2019-13990 Vulnerability in maven package org.quartz-scheduler:quartz
CVE-2023-6293 Vulnerability in npm package sequelize-typescript