Today > | 9 High | 16 Medium vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-12694

Dec. 18, 2024, 10:15 p.m.

Product(s) Impacted

Google Chrome

  • before 131.0.6778.204

Description

Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Weaknesses

CWE-416
Use After Free

Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.

CWE ID: 416

Date

Published: Dec. 18, 2024, 10:15 p.m.

Last Modified: Dec. 18, 2024, 10:15 p.m.

Status : Received

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

chrome-cve-admin@google.com

References

https://chromereleases.googleblog.com/ chrome-cve-admin@google.com

https://issues.chromium.org/ chrome-cve-admin@google.com