CVE-2024-9123

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Sep 25, 2024
Updated: Jan 2, 2025
CWE ID 190
CWE ID 472

Summary

CVE-2024-9123 is a high severity vulnerability affecting Google Chrome versions prior to 129.0.6668.70. This issue involves an integer overflow in Skia, a graphics library used by Chrome. A remote attacker can exploit this vulnerability by crafting a malicious HTML page, leading to an out-of-bounds memory write. This can potentially allow the attacker to execute arbitrary code, posing a significant security risk to users.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share