CVE-2024-5830

Description

Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
6.188

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in Google Chrome (x64) (126.0.6478.56, 126.0.6478.57)Windows
Multiple vulnerabilities are fixed in Google Chrome (126.0.6478.56, 126.0.6478.57)Windows
Multiple vulnerabilities are fixed in Microsoft Edge for chromium business (126.0.2592.56) (x64)Windows
Multiple vulnerabilities are fixed in Microsoft Edge for chromium business (126.0.2592.56) (x86)Windows
Multiple vulnerabilities are fixed in Google Chrome For Mac (126.0.6478.56, 126.0.6478.57)Mac
chromium security update(DSA-5710-1) chromium_126.0.6478.56-1~deb12u1_i386.debLinux
chromium security update(DSA-5710-1) chromium_126.0.6478.56-1~deb12u1_amd64.debLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-339104Google Chrome (x64) (126.0.6478.56, 126.0.6478.57)
PATCH-339103Google Chrome (126.0.6478.56, 126.0.6478.57)
PATCH-39151Microsoft Edge for chromium business (126.0.2592.56) (x64)
PATCH-39150Microsoft Edge for chromium business (126.0.2592.56) (x86)
PATCH-609674Google Chrome For Mac (132.0.6834.83, 132.0.6834.84)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234