CVE-2024-7971

9.6CRITICAL

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

发布于: 8/21/2024更新于: 10/24/2025

CISA已知被利用漏洞

Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker to exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

所需操作:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

截止日期:

2024-09-16

描述

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

AI分析AI驱动

受影响产品

googlechrome
microsoftedge

参考资料