CVE-2024-7971

9.6CRITICAL

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Veröffentlicht: 8/21/2024Aktualisiert: 10/24/2025

CISA Bekannte Ausgenutzte Schwachstelle

Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker to exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Erforderliche Maßnahme:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Fälligkeitsdatum:

2024-09-16

Beschreibung

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

KI-AnalyseKI-gestützt

Betroffene Produkte

googlechrome
microsoftedge

Referenzen