Lucene search

K
vulnrichmentChromeVULNRICHMENT:CVE-2024-1673
HistoryFeb 21, 2024 - 3:14 a.m.

CVE-2024-1673

2024-02-2103:14:43
Chrome
github.com
4
google chrome
accessibility
use after free
heap corruption
remote attacker
ui gestures
chromium security

AI Score

7.1

Confidence

High

SSVC

Exploitation

poc

Automatable

yes

Technical Impact

total

Use after free in Accessibility in Google Chrome prior to 122.0.6261.57 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via specific UI gestures. (Chromium security severity: Medium)

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*"
    ],
    "vendor": "google",
    "product": "chrome",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "lessThan": "122.0.6261.57",
        "versionType": "custom"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

7.1

Confidence

High

SSVC

Exploitation

poc

Automatable

yes

Technical Impact

total