CVE-2022-2608: Fedoraproject Fedora

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Use after free in Overview Mode in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.

Affected products

  • Fedoraproject Fedora: version 37 only
  • Google Chrome: before 104.0.5112.79 (fixed in 104.0.5112.79)

Published 2022-08-12. Last modified 2026-06-17.