CVE-2024-1669: Out of bounds memory access in Blink
Chromium: CVE-2024-1669 Out of bounds memory access in Blink
Other sources
Out of bounds memory access in Blink in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Google Chrome (Trace Event)to a version that resolves this vulnerability.Fixed in 122.0.6261.57 - Upgrade
Upgrade
Chromium (Blink)to a version that resolves this vulnerability.Fixed in 122.0.6261.57
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-1669?
CVE-2024-1669 has a critical severity rating due to the potential for exploitation through out-of-bounds memory access.
How do I fix CVE-2024-1669?
To fix CVE-2024-1669, update Google Chrome to version 122.0.6261.57 or later, or apply the necessary updates for Microsoft Edge based on the current version.
Which software is affected by CVE-2024-1669?
CVE-2024-1669 affects Google Chrome versions prior to 122.0.6261.57 and Microsoft Edge (Chromium-based) that relies on Chromium.
Is there a workaround for CVE-2024-1669?
There are no known workarounds for CVE-2024-1669, so users are advised to apply the latest updates.
Where can I find more details about CVE-2024-1669?
For more details on CVE-2024-1669, refer to the security announcements from Google and Microsoft regarding their respective browser updates.