
Vulnerabilità Use After Free in Google Chrome segnalata dal team S4E
Vulnerabilità Use After Free di Google Chrome segnalata da S4E Team
Ricompensa totale del Bug Bounty: $6.000
Questo è un Proof of Concept per:
Post del blog di Google:
https://chromereleases.googleblog.com/2021/07/stable-channel-update-for-desktop_20.html
Requisiti: Nulla, devi solo eseguire un file HTML in una versione precedente di Google Chrome [91.0.4472.77] + [stabile] (build ufficiale) (64-bit)
poc-exploit.html (The bug works in Google Chrome 91 or lower. It is patched in 92+)
Il bug menzionato è "Reported by Security For Everyone Team"