Kaspersky ID:
KLA65278
Erkennungsdatum:
03/22/2024
Aktualisiert:
03/26/2025

Beschreibung

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code, spoof user interface, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. Out of bounds read vulnerability in Swiftshader can be exploited to cause denial of service.
  2. Implementation vulnerability in iOS can be exploited to cause denial of service.
  3. Use after free vulnerability in Canvas can be exploited to cause denial of service or execute arbitrary code.
  4. Security UI vulnerability in iOS can be exploited to spoof user interface.
  5. A security feature bypass vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to bypass security restrictions.
  6. A spoofing vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to spoof user interface.
  7. Object lifecycle issue in V8 can be exploited to bypass security restrictions.
  8. Implementation vulnerability in Downloads can be exploited to cause denial of service.

Ursprüngliche Informationshinweise

Betroffene Produkte

CVE Liste

  • CVE-2024-2629
    warning
  • CVE-2024-2627
    critical
  • CVE-2024-2628
    warning
  • CVE-2024-2626
    high
  • CVE-2024-2631
    warning
  • CVE-2024-2630
    high
  • CVE-2024-2625
    critical
  • CVE-2024-26247
    warning
  • CVE-2024-29057
    warning

KB Liste

Mehr erfahren

Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com

Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!
Kaspersky Next
Let´s go Next: Cybersicherheit neu gedacht
Erfahren Sie mehr
Neu: Kaspersky!
Dein digitales Leben verdient umfassenden Schutz!
Erfahren Sie mehr
Do you want to save your changes?
Your message has been sent successfully.