Heap-based buffer overflow in Google Chromium - CVE-2021-4321
Published: May 25, 2021 / Updated: August 16, 2023
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when processing untrusted HTML content in Autofill. A remote attacker can create a specially crafted web page, trick the victim into opening it, trigger a heap-based buffer overflow and crash the browser.
Affected software
Google Chrome
Fedora
Orion Platform
chromium
How to mitigate CVE-2021-4321
Orion Platform - update to 2024.2
Google Chrome - update to 91.0.4472.77
chromium - update to 115.0.5790.170-1.fc38