CVE-2024-0519
גבוהה 8.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Google Chromium V8 Out-of-Bounds Memory Access Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
תיאור (מקור, אנגלית)
Out of bounds memory access in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 4% (אחוזון 100) נכון ל-25/7/2026
- CWE
- CWE-787, CWE-125
מוצרים מושפעים
google: chrome; fedoraproject: fedora; couchbase: couchbase server
קישורים
- https://chromereleases.googleblog.com/2024/01/stable-channel-update-for-deskto… Release Notes
- https://crbug.com/1517354 Permissions Required
- https://lists.fedoraproject.org/archives/list/[email protected]… Broken LinkMailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Broken LinkMailing List
- https://www.couchbase.com/alerts/ Third Party Advisory
- https://chromereleases.googleblog.com/2024/01/stable-channel-update-for-deskto… Release Notes
- https://crbug.com/1517354 Permissions Required
- https://lists.fedoraproject.org/archives/list/[email protected]… Broken LinkMailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Broken LinkMailing List
- https://www.couchbase.com/alerts/ Third Party Advisory