CVE-2024-7000

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 6, 2024
Updated: Aug 7, 2024
CWE ID 416

Summary

CVE-2024-7000 is a medium severity vulnerability affecting Google Chrome versions prior to 127.0.6533.72. This issue involves a use-after-free flaw in the CSS processing component. A remote attacker can potentially exploit this vulnerability by convincing a user to interact with a specially crafted HTML page, resulting in heap corruption. This could lead to arbitrary code execution and subsequent security compromises. Users are strongly advised to update their Chrome browsers to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share