CVE-2024-11117: Inappropriate implementation in FileSystem
Chromium: CVE-2024-11117 Inappropriate implementation in FileSystem
Other sources
Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Low)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-11117?
CVE-2024-11117 has been rated with a high severity level due to its potential to allow inappropriate access to sensitive data.
How do I fix CVE-2024-11117?
To fix CVE-2024-11117, update Google Chrome to version 131.0.6778.69 or Microsoft Edge to version 131.0.2903.48.
What are the affected software versions for CVE-2024-11117?
CVE-2024-11117 affects Google Chrome versions prior to 131.0.6778.69 and Microsoft Edge versions prior to 131.0.2903.48.
Is CVE-2024-11117 present in older versions of Edge?
Yes, CVE-2024-11117 is present in older versions of Microsoft Edge that are prior to 131.0.2903.48.
Who reported CVE-2024-11117?
CVE-2024-11117 was assigned by Chrome and is relevant to both Chrome and Chromium-based Edge browsers.