CVE-2021-21219
MEDIUMGoogle Chrome <90.0.4430.72 - Info Disclosure
Title source: llmDescription
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
References (7)
Scores
CVSS v3
5.5
EPSS
0.0060
EPSS Percentile
69.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-252
Status
published
Affected Products (5)
google/chrome
< 90.0.4430.72
debian/debian_linux
fedoraproject/fedora
fedoraproject/fedora
fedoraproject/fedora
Timeline
Published
Apr 26, 2021
Tracked Since
Feb 18, 2026