CVE-2024-7005: Insufficient validation of untrusted input in Safe Browsing
Chromium: CVE-2024-7005 Insufficient validation of untrusted input in Safe Browsing
Other sources
Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass discretionary access control via a malicious file. (Chromium security severity: Low)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-7005?
CVE-2024-7005 has been classified with a severity rating that indicates a potential for serious exploitation in the affected software.
How do I fix CVE-2024-7005?
To fix CVE-2024-7005, users should update to the latest version of Microsoft Edge (Chromium-based) or Google Chrome available.
Which versions are affected by CVE-2024-7005?
CVE-2024-7005 affects Microsoft Edge (Chromium-based) versions below 127.0.2651.74 and Google Chrome versions below 127.0.6533.72.
Is CVE-2024-7005 a Chrome-specific vulnerability?
CVE-2024-7005 originates from Chromium, which underpins both Google Chrome and Microsoft Edge (Chromium-based).
Where can I find more information on CVE-2024-7005?
Detailed information on CVE-2024-7005 can typically be found in security update notes from Microsoft and Google.