Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Nov 17, 2021

High
CISA KEV

CVE-2021-38003

GoogleChromium V8

Google Chromium V8 Engine has a bug in JSON.stringify, where the internal TheHole value can leak to script code, causing memory corruption. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Required Action

https://nvd.nist.gov/vuln/detail/CVE-2021-38003

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Nov 3, 2021
KEV Added
Nov 3, 2021
Due Date
Nov 17, 2021
Related Articles
0

Vendor

Google

Chromium V8