Undergoing Analysis
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Products
Google Chrome
- prior to 127.0.6533.72
Source
chrome-cve-admin@google.com
Tags
CVE-2024-6989 details
Published : Aug. 6, 2024, 4:15 p.m.
Last Modified : Aug. 6, 2024, 4:30 p.m.
Last Modified : Aug. 6, 2024, 4:30 p.m.
Description
Use after free in Loader in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|---|---|
CWE-416 | Use After Free | Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code. |
References
URL | Source |
---|---|
https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html | chrome-cve-admin@google.com |
https://issues.chromium.org/issues/349342289 | chrome-cve-admin@google.com |
This website uses the NVD API, but is not approved or certified by it.