VDB
CVE-2024-8904
CVE-2024-8904
PUBLISHED
In Google Chrome bestehen mehrere Schwachstellen. Diese Fehler existieren in mehreren Komponenten wie V8, Omnibox oder Downloads, unter anderem aufgrund mehrerer sicherheitsrelevanter Probleme wie einer Typenverwechslung, einer unangemessenen Implementierung oder einer unzureichenden Datenvalidierung. Diese Fehler führen möglicherweise zu einer entfernten Codeausführung. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.22% · 44.9th percentile
Risk Scores
EPSS Score
0.22%
44.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | |
| SUSE | SUSE openSUSE | |
| IGEL | IGEL OS 12 | |
| Microsoft | Microsoft Edge Stable Channel <129.0.2792.52 | |
| Microsoft | Microsoft Edge Extended Stable Channel <128.0.2739.90 | |
| Google Chrome <129.0.6668.58 | ||
| Fedora | Fedora Linux | |
| IGEL | IGEL OS 11 | |
| Microsoft | Microsoft Edge Android | |
| Google Chrome <129.0.6668.59 |
Exploit Intelligence
- https://issues.chromium.org/issues/365376497 (nist-nvd)
Timeline
- Sep 17, 2024 CVE Published
- Sep 18, 2024 EPSS Score
- Sep 18, 2024 CVE Updated
- Oct 5, 2024 Coalition ESS Score
- Oct 8, 2024 EPSS Score
- Oct 27, 2024 EPSS Score
- Nov 16, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Dec 26, 2024 EPSS Score
- Jan 15, 2025 EPSS Score
- Jan 24, 2025 Coalition ESS Score
- Feb 3, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2163.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2163 advisory
- http://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d29b1647b advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-034e4b1091 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-d273b23c67 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2cc55c9f93 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-b85d941d78 advisory
- https://lists.debian.org/debian-security-announce/2024/msg00186.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WO53QQEYC3CQF4EJBPA3KLLPNB4DLPCF/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://kb.igel.com/security-safety/current/isn-2024-20-chromium-vulnerabilities advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2189.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2189 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#september-19-2024 advisory
- https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory