Stats
- First seen
- July 2024
- Last seen
- July 2024
Description
Detects web content that exploits CVE-2021-30633, a use-after-free in Chrome's IndexedDB implementation that can escape the renderer sandbox. The rule matches the heap spray with fake external objects that public exploits use, and Google confirmed exploitation in the wild before the September 2021 patch.