QID 375966
Date Published: 2021-10-21
QID 375966: Google Chrome Prior to 95.0.4638.54 Multiple Vulnerabilities
Chrome has released security updates for Windows, Mac, and Linux to fix the vulnerabilities.
Chrome is prone to:
CVE-2021-37981 : Heap buffer overflow in Skia.
CVE-2021-37982 : Use after free in Incognito.
CVE-2021-37983 : Use after free in Dev Tools.
CVE-2021-37984 : Heap buffer overflow in PDFium.
CVE-2021-37985 : Use after free in V8.
CVE-2021-37986 : Heap buffer overflow in Settings.
CVE-2021-37987 : Use after free in Network APIs.
CVE-2021-37988 : Use after free in Profiles.
CVE-2021-37989 : Inappropriate implementation in Blink.
CVE-2021-37990 : Inappropriate implementation in WebView.
CVE-2021-37991 : Race in V8.
CVE-2021-37992 : Out of bounds read in WebAudio.
CVE-2021-37993 : Use after free in PDF Accessibility.
CVE-2021-37996 : Insufficient validation of untrusted input in Downloads.
CVE-2021-37994 : Inappropriate implementation in iFrame Sandbox.
CVE-2021-37995 : Inappropriate implementation in WebApp Installer.
Affected Versions:
Google Chrome Prior to 95.0.4638.54
QID Detection Logic(Authenticated):
This QID checks for vulnerable versions of Google Chrome on Windows, MAC OS, and Linux OS.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
- Google Chrome 95.0.4638.54 -
chromereleases.googleblog.com/2021/10/stable-channel-update-for-desktop_19.html
CVEs related to QID 375966
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Google Chrome 94.0.4606.81 |
|