← Back to browse · API

CVE-2022-4135

Severity
CRITICAL
CVSS
9.6
EPSS
0.31864
Risk score
74.55
CISA KEV
Yes
PoC
No
Published
2022-11-28
Modified
2022-11-28
First seen
2026-08-07
Aliases
EUVD-2022-7297, GHSA-995F-9X5R-2RCJ
Products
Google:Chrome unspecified <107.0.5304.121, Google:Chromium GPU
Sources
euvd EUVD-2022-7297
cisa.gov CVE-2022-4135

Description

Google Chromium GPU contains a heap buffer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

References