CVE-2024-38207Type Confusion in Microsoft Edge

Severity
6.3MEDIUMNVD
EPSS
0.3%
top 49.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 23
Latest updateAug 24

Description

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:LExploitability: 2.8 | Impact: 3.4

Affected Packages2 packages

NVDmicrosoft/edge_chromium< 128.0.2739.42
CVEListV5microsoft/microsoft_edge1.0.0128.0.2739.42

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2v3r-26j9-rjqh: Microsoft Edge (HTML-based) Memory Corruption Vulnerability2024-08-24
CVEList
Microsoft Edge (HTML-based) Memory Corruption Vulnerability2024-08-23

📋Vendor Advisories

1
Microsoft
Microsoft Edge (HTML-based) Memory Corruption Vulnerability2024-08-13
CVE-2024-38207 — Type Confusion in Microsoft Edge | cvebase