CVE-2024-4558
published 2024-05-07CVE-2024-4558: Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…
PriorityP352critical9.6CVSS 3.1
AVNACLPRNUIRSCCHIHAH
EPSS
1.34%
68.2th percentile
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_17.6_and_ipados | — | — |
| apple | ipados | < 17.6 | 17.6 |
| apple | iphone_os | < 17.6 | 17.6 |
| apple | macos | < 14.6 | 14.6 |
| apple | macos_sonoma | — | — |
| apple | safari | < 17.6 | 17.6 |
| apple | safari | — | — |
| chromium | chromium | >= 0 < 124.0.6367.155-1~deb12u1 | 124.0.6367.155-1~deb12u1 |
| chromium | chromium | >= 0 < 124.0.6367.155-1 | 124.0.6367.155-1 |
| chromium | chromium | >= 0 < 124.0.6367.155-1 | 124.0.6367.155-1 |
| debian | chromium | < chromium 124.0.6367.155-1~deb12u1 (bookworm) | chromium 124.0.6367.155-1~deb12u1 (bookworm) |
| debian | webkit2gtk | < chromium 124.0.6367.155-1~deb12u1 (bookworm) | chromium 124.0.6367.155-1~deb12u1 (bookworm) |
| debian | wpewebkit | < chromium 124.0.6367.155-1~deb12u1 (bookworm) | chromium 124.0.6367.155-1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| chrome | < 124.0.6367.155 | 124.0.6367.155 | |
| chrome | >= 124.0.6367.155 < 124.0.6367.155 | 124.0.6367.155 | |
| chrome_chrome | — | — | |
| msrc | microsoft_edge | — | — |
CVSS provenance
nvdv3.19.6CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
osv9.6CRITICAL
vendor_debian9.6CRITICAL
vendor_msrc9.6CRITICAL
vendor_redhat9.6CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
WebKitGTK vulnerabilities
vendor_ubuntu·2024-09-09
CVE-2024-40789 WebKitGTK vulnerabilities
Title: WebKitGTK vulnerabilities
Summary: Several security issues were fixed in WebKitGTK.
Several security issues were discovered in the WebKitGTK Web and JavaScript
engines. If a user were tricked into viewing a malicious website, a remote
attacker could exploit a variety of issues related to web browser security,
including cross-site scripting attacks, denial of service attacks, and
arbitrary code execution.
Instructions: This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any applications
that use WebKitGTK, such as Epiphany, to make all the necessary changes.
Apple
CVE-2024-4558: Safari 17.6
vendor_apple·2024-07-29·CVSS 9.6
CVE-2024-4558 [CRITICAL] CVE-2024-4558: Safari 17.6
Apple Security Update: About the security content of Safari 17.6
Product: Safari
Version: 17.6
CVE: CVE-2024-4558
Component: CVE-2024-4558
Apple
CVE-2024-4558: iOS 17.6 and iPadOS 17.6
vendor_apple·2024-07-29·CVSS 9.6
CVE-2024-4558 [CRITICAL] CVE-2024-4558: iOS 17.6 and iPadOS 17.6
Apple Security Update: About the security content of iOS 17.6 and iPadOS 17.6
Product: iOS 17.6 and iPadOS
Version: 17.6
CVE: CVE-2024-4558
Component: CVE-2024-4558
Apple
CVE-2024-4558: macOS Sonoma 14.6
vendor_apple·2024-07-29·CVSS 9.6
CVE-2024-4558 [CRITICAL] CVE-2024-4558: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-4558
Component: CVE-2024-4558
Microsoft
Chromium: CVE-2024-4558 Use after free in ANGLE
vendor_msrc·2024-05-14·CVSS 9.6
CVE-2024-4558 [CRITICAL] Chromium: CVE-2024-4558 Use after free in ANGLE
Chromium: CVE-2024-4558 Use after free in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based). It is being documented in the Security Update Guide to announce that the latest version of Microsoft Edge (Chromium-based) is no longer vulnerable.
How can I see the version of the browser?
In your Microsoft Edge browser, click on the 3 dots (...) on the very right-hand side of the window
Click on Help and Feedback
Click on About Microsoft Edge
FAQ:
Mic
Chrome
Stable Channel Update for Desktop: CVE-2024-4558
vendor_chrome·2024-05-07·CVSS 9.6
CVE-2024-4558 [HIGH] Stable Channel Update for Desktop: CVE-2024-4558
Stable Channel Update for Desktop
CVE-2024-4558: Use after free in ANGLE. Reported by gelatin dessert on 2024-04-29 [TBD][ 331369797 ] High CVE-2024-4559: Heap buffer overflow in WebAudio
Reported by Cassidy Kim(@cassidy6564) on 2024-03-26 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel
Severity: high
Red Hat
chromium-browser: Use after free in ANGLE
vendor_redhat·2024-05-07·CVSS 9.6
CVE-2024-4558 [CRITICAL] CWE-416 chromium-browser: Use after free in ANGLE
chromium-browser: Use after free in ANGLE
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
There's a flaw in the Angle package where processing maliciously crafted web content may lead to a use-after-free. A remote attacker may leverage that to exploit heap corruption related bugs, such as crashing the application or remote code execution.
Package: webkitgtk3 (Red Hat Enterprise Linux 7) - Out of support scope
Debian
CVE-2024-4558: chromium - Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remot...
vendor_debian·2024·CVSS 9.6
CVE-2024-4558 [CRITICAL] CVE-2024-4558: chromium - Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remot...
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Scope: local
bookworm: resolved (fixed in 124.0.6367.155-1~deb12u1)
bullseye: open
forky: resolved (fixed in 124.0.6367.155-1)
sid: resolved (fixed in 124.0.6367.155-1)
trixie: resolved (fixed in 124.0.6367.155-1)
GHSA
GHSA-r4j8-j63p-24j8: Use after free in ANGLE in Google Chrome prior to 124
ghsa_unreviewed·2024-05-07
CVE-2024-4558 [HIGH] CWE-416 GHSA-r4j8-j63p-24j8: Use after free in ANGLE in Google Chrome prior to 124
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
OSV
CVE-2024-4558: Use after free in ANGLE in Google Chrome prior to 124
osv·2024-05-07·CVSS 9.6
CVE-2024-4558 [CRITICAL] CVE-2024-4558: Use after free in ANGLE in Google Chrome prior to 124
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
No detection rules found.
No public exploits indexed.
http://seclists.org/fulldisclosure/2024/Jul/15http://seclists.org/fulldisclosure/2024/Jul/16http://seclists.org/fulldisclosure/2024/Jul/18https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_7.htmlhttps://issues.chromium.org/issues/337766133https://lists.fedoraproject.org/archives/list/[email protected]/message/6G7EYH2JAK5OJPVNC6AXYQ5K7YGYNCDN/https://lists.fedoraproject.org/archives/list/[email protected]/message/BWFSZNNWSQYDRYKNLBDGEXXKMBXDYQ3F/https://lists.fedoraproject.org/archives/list/[email protected]/message/FAWEKDQTHPN7NFEMLIWP7YMIZ2DHF36N/https://lists.fedoraproject.org/archives/list/[email protected]/message/IPETICRXUOGRIM4U3BCRTIKE3IZWCSBT/https://lists.fedoraproject.org/archives/list/[email protected]/message/LE3ASLH6QF2E5OVJI5VA3JSEPJFFFMNY/http://seclists.org/fulldisclosure/2024/Jul/15http://seclists.org/fulldisclosure/2024/Jul/16http://seclists.org/fulldisclosure/2024/Jul/18https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_7.htmlhttps://issues.chromium.org/issues/337766133https://lists.debian.org/debian-lts-announce/2024/09/msg00006.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/6G7EYH2JAK5OJPVNC6AXYQ5K7YGYNCDN/https://lists.fedoraproject.org/archives/list/[email protected]/message/BWFSZNNWSQYDRYKNLBDGEXXKMBXDYQ3F/https://lists.fedoraproject.org/archives/list/[email protected]/message/FAWEKDQTHPN7NFEMLIWP7YMIZ2DHF36N/https://lists.fedoraproject.org/archives/list/[email protected]/message/IPETICRXUOGRIM4U3BCRTIKE3IZWCSBT/https://lists.fedoraproject.org/archives/list/[email protected]/message/LE3ASLH6QF2E5OVJI5VA3JSEPJFFFMNY/https://support.apple.com/kb/HT214117https://support.apple.com/kb/HT214119https://support.apple.com/kb/HT214121
2024-05-07
Published