Rewterz
Rewterz Threat Advisory – CVE-2021-22543 – Linux Kernel Privilege Escalation
May 27, 2021
Rewterz
Rewterz Threat Advisory – CVE-2021-23017 – F5 Nginx Code Execution Vulnerability
May 27, 2021

Rewterz Threat Advisory – Multiple Google Chrome Code Execution Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2021-30529

Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in Bookmarks. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.

CVE-2021-30535

Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a double-free in ICU. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.

Impact

Unauthorized Access

Affected Vendors

Google

Affected Products

Google Chrome 91

Remediation

Upgrade to the latest version of Chome (91.0.4472.77 or later), available from the Google Chrome Web site. https://chromereleases.googleblog.com/2021/05/stable-channel-update-for-desktop_25.html