CVE-2022-0343

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/03/2022
Last modified:
07/04/2022

Description

A local attacker, as a different local user, may be able to send a HTTP request to 127.0.0.1:10000 after the user (typically a developer) manually invoked the ./tools/run-dev-server script. It is recommended to upgrade to any version beyond 24.2

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:google:perfetto:*:*:*:*:*:*:*:* 24.2 (including)