HIGH

CVE-2024-0519

Google Chrome 2024-01-16 CVSS v3.1
CVSS
8.8
KEV

Description

Out of bounds memory access in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Summary dbcve.org

Out-of-bounds memory access vulnerability in Chrome's V8 JavaScript engine allows a remote attacker to exploit heap corruption via a malicious crafted HTML page, potentially leading to arbitrary code execution.

Mitigation

Update Google Chrome to version 120.0.6099.224 or later to patch the V8 vulnerability.

Weakness (CWE)

CWE-787 Out-of-bounds Write
CWE-125 Out-of-bounds Read

EPSS Score

3.8%
Probability of exploitation in next 30 days
89.6th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE