CVE-2024-7969

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 21, 2024
Updated: Aug 22, 2024
CWE ID 843

Summary

CVE-2024-7969 is a vulnerability affecting Google Chrome versions prior to 128.0.6613.84, characterized as a type confusion issue in the V8 engine that may lead to heap corruption when a user interacts with a specially crafted HTML page. The vulnerability has been assigned a high severity rating, with an exploitability score of 2.8, indicating a low complexity attack vector requiring user interaction but resulting in significant impacts on confidentiality, integrity, and availability for affected products. Organizations using impacted versions of Chrome should promptly update their software to the latest version to mitigate potential exploitation risks. The vulnerability poses serious security concerns as it could allow remote attackers to compromise systems through malicious web content. For more details on remediating this issue, affected users are encouraged to refer to the vendor advisory and release notes linked in associated references.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share