CVE-2024-9859: High severity google chrome (trace event) vulnerability
Published Oct 11, 2024
·Updated
Type confusion in WebAssembly in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Affected Software
1 affected component
Google Chrome<126.0.6478.126
Event History
Oct 11, 2024
CVE Published
via MITRE·04:32 PM
Data Sourced
via MITRE·04:32 PM
DescriptionWeakness
Apr 20, 57000
Event
via FIRST·01:18 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-9859?
The severity of CVE-2024-9859 is categorized as High.
2
How do I fix CVE-2024-9859?
To fix CVE-2024-9859, update Google Chrome to version 126.0.6478.126 or later.
3
What type of vulnerability is CVE-2024-9859?
CVE-2024-9859 is a type confusion vulnerability in WebAssembly within Google Chrome.
4
What kind of attack can CVE-2024-9859 enable?
CVE-2024-9859 can allow a remote attacker to execute arbitrary code via a crafted HTML page.
5
Which versions of Google Chrome are affected by CVE-2024-9859?
Google Chrome versions prior to 126.0.6478.126 are affected by CVE-2024-9859.