CVE-2021-21207 log

Source
Severity Medium
Remote Yes
Type Sandbox escape
Description
Use after free in IndexedDB in Google Chrome prior to 90.0.4430.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
Group Package Affected Fixed Severity Status Ticket
AVG-1840 opera 75.0.3969.218-1 76.0.4017.94-1 High Fixed
AVG-1828 vivaldi 3.7.2218.58-1 3.8.2259.37-1 High Fixed
AVG-1827 chromium 89.0.4389.128-1 90.0.4430.72-1 High Fixed
Date Advisory Group Package Severity Type
29 Apr 2021 ASA-202104-5 AVG-1840 opera High multiple issues
29 Apr 2021 ASA-202104-2 AVG-1828 vivaldi High multiple issues
References
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_14.html
https://crbug.com/1185732