Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +2 more
- < 148.0.7778.168
A use-after-free vulnerability has been identified in the Input component of Google Chrome for Android, affecting versions prior to 148.0.7778.168. This vulnerability allows a remote attacker who has compromised the renderer process to potentially escape the sandbox by using a crafted HTML page.
Exploitation of this vulnerability could lead to a sandbox escape, allowing a compromised renderer process to execute arbitrary code with elevated privileges.
Users can update to Google Chrome version 148.0.7778.168 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.