CVE-2021-37976

CVE Published 2021-10-08
Related CWE(s) CWE-862: Missing Authorization
Related Vendor(s) debian, fedoraproject, google
Related Product(s) debian_linux, chrome, fedora
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 6.5 (MEDIUM)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References