VDB
CVE-2024-4331
CVE-2024-4331
PUBLISHED
Es existieren mehrere Schwachstellen in Google Chrome / Microsoft Edge. Diese ist auf mehrere Use-after-Free-Fehler zurückzuführen. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht näher spezifizierte Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.
EPSS 1.82% · 83.2th percentile
Risk Scores
EPSS Score
1.82%
83.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Google Chrome <124.0.6367.119 | ||
| Microsoft | Microsoft Edge <124.0.2478.80 | |
| Fedora | Fedora Linux | |
| Gentoo | Gentoo Linux | |
| SUSE | SUSE openSUSE | |
| Google Chrome <124.0.6367.118 |
Exploit Intelligence
- https://issues.chromium.org/issues/335003891 (nist-nvd)
- https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_30.html (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UOC3HLIZCGMIJLJ6LME5UWUUIFLXEGRN/ (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L7I4FMQSOVTCIIH4XT2MJGEQRUACLPB6/ (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LE3ASLH6QF2E5OVJI5VA3JSEPJFFFMNY/ (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IPETICRXUOGRIM4U3BCRTIKE3IZWCSBT/ (circl)
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6G7EYH2JAK5OJPVNC6AXYQ5K7YGYNCDN/ (circl)
Timeline
- May 1, 2024 CVE Published
- May 2, 2024 EPSS Score
- May 26, 2024 EPSS Score
- Jun 21, 2024 EPSS Score
- Aug 8, 2024 EPSS Score
- Sep 2, 2024 EPSS Score
- Sep 26, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 20, 2024 EPSS Score
- Nov 14, 2024 EPSS Score
- Dec 9, 2024 EPSS Score
- Dec 20, 2024 CVE Updated
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-1011.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-1011 advisory
- http://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_30.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-808f3961ef advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-191c252b75 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-5483bc2adb advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-5cf9499b62 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-4edaf658b7 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-55e7e839f1 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-f93392509c advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-f74fbce604 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-ac000e6379 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-92780a83f9 advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/2S7S4HVABEMIRHPQD4H3O6EA36PLCUCI/ advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-df7e365b4a advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/2S7S4HVABEMIRHPQD4H3O6EA36PLCUCI/ advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-e94a7220f2 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3a548f46a8 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-1fb3cec2e0 advisory
…and 4 more