Description
Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Remediation
References
https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop_24.html
https://crbug.com/1392715
https://security.gentoo.org/glsa/202305-10
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-4135
Related Vulnerabilities
CVE-2022-37023 Vulnerability in maven package org.apache.geode:geode-core
CVE-2022-23080 Vulnerability in npm package directus
CVE-2017-8046 Vulnerability in maven package org.springframework.data:spring-data-rest-webmvc
CVE-2023-26364 Vulnerability in npm package @adobe/css-tools
CVE-2023-36479 Vulnerability in maven package org.eclipse.jetty:jetty-servlets