GHSA-vv6j-ww6x-54gx
Dashboard / Vulnerabilities / GHSA-vv6j-ww6x-54gx
Summary: Use after free in Animation
Details: CVE-2022-0609: Use after free in Animation - https://chromereleases.googleblog.com/2022/02/stable-channel-update-for-desktop_14.html - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0609 Google is aware of reports that exploits for CVE-2022-0609 exist in the wild. The exploitation is known to be easy. The attack may be initiated remotely. No form of authentication is needed for a successful exploitation. It demands that the victim is doing some kind of user interaction. Technical details are unknown but an exploit is available. There is currently little other public information on the issue other than it has been flagged as `High` severity.
References: https://github.com/cefsharp/CefSharp/security/advisories/GHSA-vv6j-ww6x-54gx, https://nvd.nist.gov/vuln/detail/CVE-2022-0609, https://chromereleases.googleblog.com/2022/02/stable-channel-update-for-desktop_14.html, https://crbug.com/1296150, https://github.com/cefsharp/CefSharp
Affected packages
Package
Name: CefSharp.Common
Purl: pkg:nuget/CefSharp.Common
Affected ranges
Type: ECOSYSTEM
Events:
