Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 148.0.7778.216
A use-after-free vulnerability has been identified in the PDFium library used by Google Chrome. This issue affects Chrome versions prior to 148.0.7778.216. The vulnerability could allow a remote attacker to exploit heap corruption by sending a specially crafted PDF file.
Exploitation of this vulnerability could lead to heap corruption, which is often a precursor to more severe memory corruption vulnerabilities, such as arbitrary code execution.
Users can update to Google Chrome version 148.0.7778.216 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.