Kaspersky ID:
KLA73437
Дата обнаружения:
17/09/2024
Обновлено:
25/03/2025

Описание

Multiple vulnerabilities were found in Google Chrome. Malicious users can exploit these vulnerabilities to cause denial of service, bypass security restrictions, execute arbitrary code, spoof user interface.

Below is a complete list of vulnerabilities:

  1. Type confusion vulnerability in V8 can be exploited to cause denial of service.
  2. Insufficient validation data vulnerability in Omnibox can be exploited to bypass security restrictions.
  3. Inappropriate implementation vulnerability in UI can be exploited to cause denial of service.
  4. Inappropriate implementation vulnerability in Autofill can be exploited to cause denial of service.
  5. Inappropriate implementation vulnerability in V8 can be exploited to cause denial of service.
  6. Security vulnerability UI in Downloads area can be exploited to bypass security restrictions.
 
 

 

 

Первичный источник обнаружения

Эксплуатация

Public exploits exist for this vulnerability.

Связанные продукты

Список CVE

  • CVE-2024-8904
    critical
  • CVE-2024-8907
    high
  • CVE-2024-8909
    warning
  • CVE-2024-8908
    warning
  • CVE-2024-8905
    critical
  • CVE-2024-8906
    warning

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Confirm changes?
Your message has been sent successfully.