Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-2294


Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Published

2022-07-28T02:15:07.797

Last Modified

2025-04-03T16:08:44.187

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-787
  • Type: Secondary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application google chrome < 103.0.5060.114 Yes
Application fedoraproject extra_packages_for_enterprise_linux 8.0 Yes
Operating System fedoraproject fedora 35 Yes
Operating System fedoraproject fedora 36 Yes
Application webkitgtk webkitgtk < 2.36.5 Yes
Application wpewebkit wpe_webkit < 2.36.5 Yes
Operating System apple ipados < 15.6 Yes
Operating System apple iphone_os < 15.6 Yes
Operating System apple mac_os_x < 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple mac_os_x 10.15.7 Yes
Operating System apple macos < 11.6.8 Yes
Operating System apple macos < 12.5 Yes
Operating System apple tvos < 15.6 Yes
Operating System apple watchos < 8.7 Yes
Application webrtc_project webrtc - Yes

References