Use after free in SplitScreen in Google Chrome on Chrome OS, Lacros prior to 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page.
2022-09-26T16:15:12.560
2025-05-21T16:15:26.967
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | chrome | < 105.0.5195.52 | Yes | |
Operating System | chrome_os | - | No | |
Operating System | linux_and_chrome_os | - | No | |
Operating System | fedoraproject | fedora | 37 | Yes |