Description
Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Remediation
References
https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html
https://crbug.com/1146673
Related Vulnerabilities
CVE-2017-18635 Vulnerability in npm package @novnc/novnc
CVE-2022-39251 Vulnerability in npm package matrix-js-sdk
CVE-2020-11022 Vulnerability in maven package org.webjars.bower:jquery
CVE-2022-4492 Vulnerability in maven package io.undertow:undertow-core
CVE-2021-3536 Vulnerability in maven package org.wildfly:wildfly-parent