EUVD-2020-1456
Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 3 Nov 2021. Evidence sources: cisa_kev.
- ENISA score
- 9.6 · CVSS 3.1
- Advisory evidence
- 8 linked advisory records
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_redhat · RHSA-2020:5165Red Hat Security Advisory: chromium-browser security update
- csaf_opensuse · openSUSE-SU-2020:1943-1Security update for chromium
- csaf_opensuse · openSUSE-SU-2020:1929-1Security update for chromium
- csaf_opensuse · openSUSE-SU-2020:2178-1Security update for opera
- csaf_opensuse · openSUSE-SU-2020:2016-1Security update for chromium
- csaf_opensuse · openSUSE-SU-2020:2013-1Security update for chromium
