VDB
CVE-2024-8905
CVE-2024-8905
PUBLISHED
In Google Chrome bestehen mehrere Schwachstellen. Diese Fehler existieren in mehreren Komponenten wie V8, Omnibox oder Downloads, unter anderem aufgrund mehrerer sicherheitsrelevanter Probleme wie einer Typenverwechslung, einer unangemessenen Implementierung oder einer unzureichenden Datenvalidierung. Diese Fehler führen möglicherweise zu einer entfernten Codeausführung. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.20% · 42.5th percentile
Risk Scores
EPSS Score
0.20%
42.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft Edge Stable Channel <129.0.2792.52 | |
| Microsoft | Microsoft Edge Android | |
| Fedora | Fedora Linux | |
| Google Chrome <129.0.6668.58 | ||
| Microsoft | Microsoft Edge Extended Stable Channel <128.0.2739.90 | |
| Google Chrome <129.0.6668.59 | ||
| SUSE | SUSE openSUSE | |
| Debian | Debian Linux | |
| IGEL | IGEL OS 12 | |
| IGEL | IGEL OS 11 |
Timeline
- Sep 17, 2024 CVE Published
- Sep 18, 2024 EPSS Score
- Sep 18, 2024 CVE Updated
- Oct 5, 2024 Coalition ESS Score
- Oct 8, 2024 EPSS Score
- Oct 27, 2024 EPSS Score
- Nov 16, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Dec 26, 2024 EPSS Score
- Jan 14, 2025 EPSS Score
- Jan 28, 2025 Coalition ESS Score
- Feb 3, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2163.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2163 advisory
- http://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d29b1647b advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-034e4b1091 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-d273b23c67 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2cc55c9f93 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-b85d941d78 advisory
- https://lists.debian.org/debian-security-announce/2024/msg00186.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WO53QQEYC3CQF4EJBPA3KLLPNB4DLPCF/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://kb.igel.com/security-safety/current/isn-2024-20-chromium-vulnerabilities advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2189.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2189 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#september-19-2024 advisory
- https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory