漏洞信息详情
谷歌 Google Chrome 资源管理错误漏洞
漏洞简介
Google Chrome是美国谷歌(Google)公司的一款Web浏览器。
Google Chrome 存在资源管理错误漏洞,远程攻击者可以创建一个特制的网页,诱使受害者访问该网页,触发释放后使用错误并在目标系统上执行任意代码。以下产品及版本受到影响:Google Chrome: 87.0.4280.66, 87.0.4280.141, 88.0.4324.96, 88.0.4324.146, 88.0.4324.150, 88.0.4324.182, 89.0.4389.72, 89.0.4389.90, 89.0.4389.114, 89.0.4389.128, 90.0.4430.72。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
参考网址
来源:GENTOO
链接:https://security.gentoo.org/glsa/202104-08
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/EAJ42L4JFPBJATCZ7MOZQTUDGV4OEHHG/
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/U3GZ42MYPGD35V652ZPVPYYS7A7LVXVY/
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/VUZBGKGVZADNA3I24NVG7HAYYUTOSN5A/
来源:MISC
链接:https://crbug.com/1197904
来源:MISC
链接:https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
来源:DEBIAN
链接:https://www.debian.org/security/2021/dsa-4906
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Chrome-multiple-vulnerabilities-35131
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042932
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2021-21226
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021050103
来源:chromereleases.googleblog.com
链接:https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042325
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.1441
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042013
受影响实体
暂无
补丁
- Google Chrome 资源管理错误漏洞的修复措施<!--2021-4-20-->
还没有评论,来说两句吧...