CVE-2024-9602

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 8, 2024
Updated: Oct 10, 2024
CWE ID 787
CWE ID 843

Summary

CVE-2024-9602 is a high-severity vulnerability found in the V8 engine of Google Chrome versions prior to 129.0.6668.100, which allows remote attackers to execute an out-of-bounds memory write via a specially crafted HTML page. Affected products include various builds of Google Chrome and Chromium-based applications. The vulnerability poses significant risks, as it can lead to unauthorized access and manipulation of sensitive information, potentially compromising user data and system integrity. To remediate the issue, users are advised to update their browsers to the latest version provided by Google, which addresses this security flaw. The CVSS score for this vulnerability is 8.8, indicating high severity with low attack complexity and requiring user interaction for exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share