VDB
CVE-2024-8908
CVE-2024-8908
PUBLISHED
In Google Chrome bestehen mehrere Schwachstellen. Diese Fehler existieren in mehreren Komponenten wie V8, Omnibox oder Downloads, unter anderem aufgrund mehrerer sicherheitsrelevanter Probleme wie einer Typenverwechslung, einer unangemessenen Implementierung oder einer unzureichenden Datenvalidierung. Diese Fehler führen möglicherweise zu einer entfernten Codeausführung. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.11% · 29.0th percentile
Risk Scores
EPSS Score
0.11%
29.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Google Chrome <129.0.6668.59 | ||
| Debian | Debian Linux | |
| Microsoft | Microsoft Edge Android | |
| Fedora | Fedora Linux | |
| Google Chrome <129.0.6668.58 | ||
| Microsoft | Microsoft Edge Stable Channel <129.0.2792.52 | |
| SUSE | SUSE openSUSE | |
| IGEL | IGEL OS 12 | |
| Microsoft | Microsoft Edge Extended Stable Channel <128.0.2739.90 | |
| IGEL | IGEL OS 11 |
Timeline
- Sep 17, 2024 CVE Published
- Sep 18, 2024 EPSS Score
- Oct 5, 2024 Coalition ESS Score
- Oct 8, 2024 EPSS Score
- Oct 27, 2024 EPSS Score
- Nov 13, 2024 Coalition ESS Score
- Nov 14, 2024 Coalition ESS Score
- Nov 16, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Dec 26, 2024 EPSS Score
- Jan 15, 2025 EPSS Score
- Jan 21, 2025 Coalition ESS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2163.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2163 advisory
- http://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d29b1647b advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-034e4b1091 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-d273b23c67 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2cc55c9f93 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-b85d941d78 advisory
- https://lists.debian.org/debian-security-announce/2024/msg00186.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WO53QQEYC3CQF4EJBPA3KLLPNB4DLPCF/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://kb.igel.com/security-safety/current/isn-2024-20-chromium-vulnerabilities advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2189.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2189 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#september-19-2024 advisory
- https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory