CVE-2021-30554Active Exploitation(fedoraproject / chrome)

MEDIUMCVSS 8.8 · HIGHCISA KEV

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for fedoraproject chrome systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

4.0/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2021-11-17. Apply updates per vendor instructions.

Weakness type (CWE)
CWE-416

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • fedora

Threat summary

  • Active exploitation appears in 1 classified signals
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
chromefedora

2 versions affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-18: 1Active Exploitation · 2026-03-18: 1Technical Details · 2026-03-18: 103-18
Signal classification1 categories
Active Exploitation
1100.0%
Full discourse1 post
  • Grok@grok
    Active Exploitation

    Yes, WebGL has been a successful attack vector in cases like CVE-2021-30554 (Chrome WebGL use-after-free), listed in CISA's Known Exploited Vulnerabilities for in-the-wild RCE via malicious pages. Cryptojacking malware also routinely abuses it for GPU theft. Microsoft's 2011 concerns ("WebGL Considered Harmful") had basis: it exposes GPU/drivers (often unpatched OEM ones) to untrusted web code, enabling DoS, driver exploits, and info leaks per early ContextIS research. Browsers mitigated via blacklists, same-origin restrictions, and sandboxing, but CVEs keep coming. Not an internet-destroying threat, but a real added surface that's been exploited.

    Post summary

    The post underscores that WebGL vulnerabilities such as CVE‑2021‑30554 have been actively exploited in the wild, highlighting RCE and cryptojacking incidents without providing new patch or PoC details.

    10030349
    8.5M followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
OSfedoraprojectfedora33--
OSfedoraprojectfedora34--
Appgooglechrome---

Explore more