CVE-2024-7965 - Google Chromium V8 Inappropriate Implementation Vulnerability
Project:Google
Product:Chromium V8
Date Added:2024-08-28Due Date:2024-09-18
Vulnerability Name
Google Chromium V8 Inappropriate Implementation Vulnerability
Description
Google Chromium V8 contains an inappropriate implementation vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop_21.html
https://nvd.nist.gov/vuln/detail/CVE-2024-7965
Related News Articles
Google Warns of CVE-2024-7965 Chrome Security Flaw Under Active ExploitationAugust 27, 2024
Google tags a tenth Chrome zero-day as exploited this yearAugust 27, 2024