Rewterz Threat Alert – Amadey Botnet – Active IOCs
September 30, 2021Rewterz Threat Alert – SNAKE Ransomware – Active IOCs
October 1, 2021Rewterz Threat Alert – Amadey Botnet – Active IOCs
September 30, 2021Rewterz Threat Alert – SNAKE Ransomware – Active IOCs
October 1, 2021Severity
High
Analysis Summary
CVE-2021-37976
Google Chrome could allow a remote attacker to obtain sensitive information, caused by an information leak in core. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to obtain sensitive information.
CVE-2021-37975
Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in V8. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
CVE-2021-37974
Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in Safe Browsing. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
Impact
- Information Disclosure
- Code Execution
Affected Vendors
Affected Products
- Google Chrome 94
Remediation
Upgrade to the latest version of Chrome, available from the Google Chrome Web site.