CVE-2024-7968

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 21, 2024
Updated: Aug 22, 2024
CWE ID 416

Summary

CVE-2024-7968 is a high-severity vulnerability affecting Google Chrome versions prior to 128.0.6613.84, specifically related to a use-after-free error in the Autofill feature. This vulnerability allows remote attackers to exploit heap corruption by persuading users to interact with specially crafted HTML pages, potentially leading to unauthorized access and data manipulation. To mitigate this risk, users are advised to update their Google Chrome browsers to the latest version immediately. The attack vector requires user interaction, indicating that awareness and caution among end-users are critical for preventing exploitation. If successfully exploited, this vulnerability poses significant threats to data confidentiality, integrity, and availability within affected organizations.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share