CVE-2024-4947

9.6CRITICAL

Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Publicado: 5/15/2024Actualizado: 10/24/2025

Vulnerabilidad Explotada Conocida (CISA)

Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker to execute code via a crafted HTML page.

Acción Requerida:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Fecha Límite:

2024-06-10

Descripción

Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Análisis IAImpulsado por IA

Productos Afectados

googlechrome
fedoraprojectfedora
38
fedoraprojectfedora
39
fedoraprojectfedora
40

Referencias