VDB
CVE-2024-8907
CVE-2024-8907
PUBLISHED
In Google Chrome bestehen mehrere Schwachstellen. Diese Fehler existieren in mehreren Komponenten wie V8, Omnibox oder Downloads, unter anderem aufgrund mehrerer sicherheitsrelevanter Probleme wie einer Typenverwechslung, einer unangemessenen Implementierung oder einer unzureichenden Datenvalidierung. Diese Fehler führen möglicherweise zu einer entfernten Codeausführung. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.07% · 21.5th percentile
Risk Scores
EPSS Score
0.07%
21.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| IGEL | IGEL OS 12 | |
| IGEL | IGEL OS 11 | |
| Google Chrome <129.0.6668.58 | ||
| Microsoft | Microsoft Edge Extended Stable Channel <128.0.2739.90 | |
| Debian | Debian Linux | |
| SUSE | SUSE openSUSE | |
| Microsoft | Microsoft Edge Android | |
| Google Chrome <129.0.6668.59 | ||
| Fedora | Fedora Linux | |
| Microsoft | Microsoft Edge Stable Channel <129.0.2792.52 |
Timeline
- Sep 17, 2024 CVE Published
- Sep 18, 2024 EPSS Score
- Oct 5, 2024 Coalition ESS Score
- Oct 8, 2024 EPSS Score
- Oct 27, 2024 EPSS Score
- Nov 16, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Dec 26, 2024 EPSS Score
- Jan 15, 2025 EPSS Score
- Feb 3, 2025 EPSS Score
- Feb 23, 2025 EPSS Score
- Mar 14, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2163.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2163 advisory
- http://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d29b1647b advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-034e4b1091 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-d273b23c67 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2cc55c9f93 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-b85d941d78 advisory
- https://lists.debian.org/debian-security-announce/2024/msg00186.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WO53QQEYC3CQF4EJBPA3KLLPNB4DLPCF/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://kb.igel.com/security-safety/current/isn-2024-20-chromium-vulnerabilities advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2189.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2189 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#september-19-2024 advisory
- https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory