Heap Corruption Vulnerability in Google Chrome by ICU
CVE-2021-30535
8.8HIGH
Key Information:
Badges
๐พ Exploit Exists๐ก Public PoC
What is CVE-2021-30535?
A double free vulnerability exists in the International Components for Unicode (ICU) library within Google Chrome versions prior to 91.0.4472.77. This flaw allows a remote attacker to potentially exploit heap corruption by crafting a malicious HTML page. Successful exploitation could lead to arbitrary code execution or a denial-of-service condition, compromising user security.
Affected Version(s)
Chrome < 91.0.4472.77
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.