Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-374f-438q-472r

Опубликовано: 21 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

EPSS

Процентиль: 50%
0.00272
Низкий

8.8 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 1 года назад

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
nvd
около 1 года назад

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

msrc
около 1 года назад

Chromium: CVE-2024-7968 Use after free in Autofill

CVSS3: 8.8
debian
около 1 года назад

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 all ...

CVSS3: 8.8
fstec
около 1 года назад

Уязвимость функции автозаполнения Autofill Payments браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 50%
0.00272
Низкий

8.8 High

CVSS3

Дефекты

CWE-416