TROYANOSYVIRUS
Retour aux CVEs

CVE-2023-7024

HIGHCISA KEV
8.8

Description

Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Details CVE

Score CVSS v3.18.8
SeveriteHIGH
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurREQUIRED
Publie12/21/2023
Derniere modification10/24/2025
Sourcekev
Observations honeypot0

CISA KEV

FournisseurGoogle
ProduitChromium WebRTC
Nom vulnerabiliteGoogle Chromium WebRTC Heap Buffer Overflow Vulnerability
Date ajout KEV2024-01-02
Date limite remediation2024-01-23
Utilise dans ransomwareUnknown

Produits affectes

debian:debian_linuxfedoraproject:fedoragoogle:chrome

Faiblesses (CWE)

CWE-787CWE-787

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.