CVE-2024-4671
| CVE Published | 2024-05-14 |
|---|---|
| Related CWE(s) | CWE-416: Use After Free |
| Related Vendor(s) | google, fedoraproject |
| Related Product(s) | fedora, chrome |
| Exploitation Reported (CISA KEV) | 2024-05-13 |
| CVSS 3 Base Score | 9.6 (CRITICAL) |
| CVSS 3 Attack Complexity | LOW |
| CVSS 3 Attack Vector | NETWORK |
Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Cyber Threat Graph Context
Explore how this CVE relates to the wider threat graph