VDB
CVE-2024-8909
CVE-2024-8909
PUBLISHED
In Google Chrome bestehen mehrere Schwachstellen. Diese Fehler existieren in mehreren Komponenten wie V8, Omnibox oder Downloads, unter anderem aufgrund mehrerer sicherheitsrelevanter Probleme wie einer Typenverwechslung, einer unangemessenen Implementierung oder einer unzureichenden Datenvalidierung. Diese Fehler führen möglicherweise zu einer entfernten Codeausführung. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um nicht spezifizierte Auswirkungen zu verursachen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.13% · 31.5th percentile
Risk Scores
EPSS Score
0.13%
31.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft Edge Stable Channel <129.0.2792.52 | |
| Microsoft | Microsoft Edge Android | |
| Microsoft | Microsoft Edge Extended Stable Channel <128.0.2739.90 | |
| IGEL | IGEL OS 12 | |
| Debian | Debian Linux | |
| SUSE | SUSE openSUSE | |
| Google Chrome <129.0.6668.59 | ||
| Google Chrome <129.0.6668.58 | ||
| Fedora | Fedora Linux | |
| IGEL | IGEL OS 11 |
Timeline
- Sep 17, 2024 CVE Published
- Sep 18, 2024 EPSS Score
- Oct 5, 2024 Coalition ESS Score
- Oct 8, 2024 EPSS Score
- Oct 27, 2024 EPSS Score
- Nov 16, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Dec 26, 2024 EPSS Score
- Jan 15, 2025 EPSS Score
- Feb 3, 2025 EPSS Score
- Feb 23, 2025 EPSS Score
- Mar 14, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2163.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2163 advisory
- http://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d29b1647b advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-034e4b1091 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-d273b23c67 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2cc55c9f93 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-b85d941d78 advisory
- https://lists.debian.org/debian-security-announce/2024/msg00186.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WO53QQEYC3CQF4EJBPA3KLLPNB4DLPCF/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/PZAWWKV77U4BUVQL3WE5ZHGVHOYFAXSS/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/O7WDMIQP5NDZYKLBCM5CDD2MLYLDW5B3/ advisory
- https://kb.igel.com/security-safety/current/isn-2024-20-chromium-vulnerabilities advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2189.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2189 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#september-19-2024 advisory
- https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_17.html advisory