Description
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
References
https://issues.chromium.org/issues/360700873
Permissions Required
ExploitPatchThird Party AdvisoryVendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-7971
US Government Resource
Weaknesses
Secondary
CWE-843
Primary
CWE-843
134c704f-9b21-4f2e-91b3-4a467353bcc0
Secondary
CWE-843
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
9.6 · Critical
Information
Source identifier
Vulnerability status
Analyzed
Published
2024-08-21T19:15:09.277Z
1 year agoLast modified
2025-10-24T12:06:55.163Z
4 months ago