logo
Home/CVEs/CVE-2024-5274/

CVE-2024-5274 - Google Chromium V8 Type Confusion Vulnerability

Project:Google

Product:Chromium V8

Date Added:2024-05-28Due Date:2024-06-18

Vulnerability Name

Google Chromium V8 Type Confusion Vulnerability

Description

Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker to execute code via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes

https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_23.html?m=1

https://nvd.nist.gov/vuln/detail/CVE-2024-5274

Related News Articles

North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitAugust 31, 2024

Russian Hackers Exploit Safari and Chrome Flaws in High-Profile CyberattackAugust 29, 2024

Russian APT29 hackers use iOS, Chrome exploits created by spyware vendorsAugust 29, 2024

Google Warns of CVE-2024-7965 Chrome Security Flaw Under Active ExploitationAugust 27, 2024

Google tags a tenth Chrome zero-day as exploited this yearAugust 27, 2024