CVE-2024-4761
גבוהה 8.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Google Chromium V8 Out-of-Bounds Memory Write Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
תיאור (מקור, אנגלית)
Out of bounds write in V8 in Google Chrome prior to 124.0.6367.207 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 11% (אחוזון 100) נכון ל-29/7/2026
- CWE
- CWE-787
מוצרים מושפעים
google: chrome; fedoraproject: fedora
קישורים
- https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-deskto… Vendor Advisory
- https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-deskto… Vendor Advisory
- https://issues.chromium.org/issues/339458194 Permissions Required
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List
- https://issues.chromium.org/issues/339458194 Permissions Required
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List
- https://lists.fedoraproject.org/archives/list/[email protected]… Mailing List