CVE-2022-0099: Use after free in Sign-in
Use after free in Sign-in in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perform specific user gestures to potentially exploit heap corruption via specific user gesture.
Credit
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2022-0096
- CVE-2022-0097
- CVE-2022-0098
- CVE-2022-0100
- CVE-2022-0101
- CVE-2022-0337
- CVE-2022-0102
- CVE-2022-0103
- CVE-2022-4924
- CVE-2022-0104
- CVE-2022-0105
- CVE-2022-0106
- CVE-2022-0107
- CVE-2022-0108
- CVE-2022-0109
- CVE-2022-0110
- CVE-2022-0111
- CVE-2022-0112
- CVE-2022-0113
- CVE-2022-0114
- CVE-2022-0115
- CVE-2022-0116
- CVE-2022-0117
- CVE-2022-0118
- CVE-2022-0120
- CVE-2022-4925
Frequently Asked Questions
What is the severity of CVE-2022-0099?
CVE-2022-0099 has a severity rating classified as high due to its potential for exploitation via heap corruption.
How do I fix CVE-2022-0099?
To fix CVE-2022-0099, users should update to Google Chrome version 97.0.4692.71 or later.
What types of systems are affected by CVE-2022-0099?
CVE-2022-0099 affects various systems using Google Chrome versions prior to 97.0.4692.71, including Debian and Fedora distributions.
Can CVE-2022-0099 be exploited remotely?
Yes, CVE-2022-0099 can be exploited remotely by an attacker who convinces a user to perform specific gestures.
What impact does CVE-2022-0099 have on users?
The impact of CVE-2022-0099 includes potential heap corruption which could allow for unauthorized actions on the user's system.