CVE-2024-6990
published 2024-08-01CVE-2024-6990: Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory access via a…
PriorityP347high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.92%
56.0th percentile
Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Critical)
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chromium | chromium | >= 0 < 127.0.6533.88-1~deb12u1 | 127.0.6533.88-1~deb12u1 |
| chromium | chromium | >= 0 < 127.0.6533.88-1 | 127.0.6533.88-1 |
| chromium | chromium | >= 0 < 127.0.6533.88-1 | 127.0.6533.88-1 |
| debian | chromium | < chromium 127.0.6533.88-1~deb12u1 (bookworm) | chromium 127.0.6533.88-1~deb12u1 (bookworm) |
| chrome | < 127.0.6533.88 | 127.0.6533.88 | |
| chrome | >= 127.0.6533.88 < 127.0.6533.88 | 127.0.6533.88 | |
| chrome_chrome | — | — | |
| msrc | microsoft_edge | — | — |
| paloalto | prisma_browser | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_msrc8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gh9v-q4wx-5m5c: Uninitialized Use in Dawn in Google Chrome on Android prior to 127
ghsa_unreviewed·2024-08-01
CVE-2024-6990 [HIGH] CWE-457 GHSA-gh9v-q4wx-5m5c: Uninitialized Use in Dawn in Google Chrome on Android prior to 127
Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Critical)
OSV
CVE-2024-6990: Uninitialized Use in Dawn in Google Chrome on Android prior to 127
osv·2024-08-01·CVSS 8.8
CVE-2024-6990 [HIGH] CVE-2024-6990: Uninitialized Use in Dawn in Google Chrome on Android prior to 127
Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Critical)
Palo Alto
PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
vendor_paloalto·2024-08-14·CVSS 8.8
[HIGH] PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
Prisma Browser (supersedes Talon Browser) has incorporated the latest upstream Chromium security fixes listed here: - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop.html - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_30.html - https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop.html CVE CVSS Summary CVE-2024-6772 8.8 ( CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H ) Chromium: Inappropriate implementation in V8. CVE-2024-6773 8.8 ( CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H ) Chromium: Type Confusion in V8. CVE-2024-6774 8.8 ( CVSS:3.1/AV:N/AC:
Microsoft
Chromium: CVE-2024-6990 Uninitialized Use in Dawn
vendor_msrc·2024-08-13·CVSS 8.8
CVE-2024-6990 [HIGH] Chromium: CVE-2024-6990 Uninitialized Use in Dawn
Chromium: CVE-2024-6990 Uninitialized Use in Dawn
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based). It is being documented in the Security Update Guide to announce that the latest version of Microsoft Edge (Chromium-based) is no longer vulnerable.
How can I see the version of the browser?
In your Microsoft Edge browser, click on the 3 dots (...) on the very right-hand side of the window
Click on Help and Feedback
Click on About Microsoft Edge
FAQ: Wha
Chrome
Stable Channel Update for Desktop: CVE-2024-6990
vendor_chrome·2024-07-30·CVSS 8.8
CVE-2024-6990 [CRITICAL] Stable Channel Update for Desktop: CVE-2024-6990
Stable Channel Update for Desktop
CVE-2024-6990: Uninitialized Use in Dawn. Reported by gelatin dessert on 2024-07-15 [TBD][ 352872238 ] High CVE-2024-7255: Out of bounds read in WebTransport
Reported by Marten Richter on 2024-07-13 [TBD][ 354748060 ] High CVE-2024-7256: Insufficient data validation in Dawn
Severity: critical
Debian
CVE-2024-6990: chromium - Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 all...
vendor_debian·2024·CVSS 8.8
CVE-2024-6990 [HIGH] CVE-2024-6990: chromium - Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 all...
Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Critical)
Scope: local
bookworm: resolved (fixed in 127.0.6533.88-1~deb12u1)
bullseye: open
forky: resolved (fixed in 127.0.6533.88-1)
sid: resolved (fixed in 127.0.6533.88-1)
trixie: resolved (fixed in 127.0.6533.88-1)
No detection rules found.
No public exploits indexed.
Trendmicro
The August 2024 Security Update Review
blogs_trendmicro·2024-08-13·CVSS 6.7
[MEDIUM] The August 2024 Security Update Review
## The August 2024 Security Update Review
Get the August 2024 security update and review.
By: Dustin Childs 2024/08/13 Read time: ( words)
Save to Folio
I have successfully survived Summer Hacker Camp, and I hope you have too. And we return just in time for Patch Tuesday and a new crop of 0-days as Microsoft and Adobe have released their regularly scheduled updates. Take a break from your regular activities and join us as we review the details of their latest security alerts. If you’d rather watch the full video recap covering the entire release, you can check it out here:
CVE
Title
Severity
CVSS
Public
Exploited
Type
CVE-2024-38189
Microsoft Project Remote Code Execution Vulnerability
Important
8.8
No
Yes
RCE
CVE-2024-38178
Scripting Engine Memory Corruption Vulnerabil
Bleepingcomputer
Microsoft August 2024 Patch Tuesday fixes 9 zero-days, 6 exploited
blogs_bleepingcomputer·2024-08-13·CVSS 7.5
[HIGH] Microsoft August 2024 Patch Tuesday fixes 9 zero-days, 6 exploited
## Microsoft August 2024 Patch Tuesday fixes 9 zero-days, 6 exploited
## Lawrence Abrams
36 Elevation of Privilege Vulnerabilities
4 Security Feature Bypass Vulnerabilities
28 Remote Code Execution Vulnerabilities
8 Information Disclosure Vulnerabilities
6 Denial of Service Vulnerabilities
7 Spoofing Vulnerabilities
The number of bugs listed above do not include Microsoft Edge flaws that were disclosed earlier this month.
To learn more about the non-security updates released today, you can review our dedicated articles on the new Windows 11 KB5041585 update and Windows 10 KB5041580 update .
## Ten zero-days disclosed
This month's Patch Tuesday fixes six actively exploited and three other publicly disclosed zero-day vulnerabilities. Another publicly disclosed zero-day remains unf
Trendmicro
The August 2024 Security Update Review
blogs_trendmicro·2024-08-13
The August 2024 Security Update Review
# The August 2024 Security Update Review
Get the August 2024 security update and review.
By: Dustin Childs
2024/08/13
Read time: ( words)
Save to Folio
I have successfully survived Summer Hacker Camp, and I hope you have too. And we return just in time for Patch Tuesday and a new crop of 0-days as Microsoft and Adobe have released their regularly scheduled updates. Take a break from your regular activities and join us as we review the details of their latest security alerts. If you’d rather watch the full video recap covering the entire release, you can check it out here:
Adobe Patches for August 2024
For August, Adobe released 11 security bulletins addressing 71 CVEs in Adobe Illustrator. Dimension, Photoshop, InDesign, Acrobat and Reader, Bridge, Substance 3D Stager, Commerce, InC
Bugzilla
CVE-2024-45781 grub2: fs/ufs: OOB write in the heap
bugzilla·2025-02-14·CVSS 6.7
CVE-2024-45781 [MEDIUM] CVE-2024-45781 grub2: fs/ufs: OOB write in the heap
CVE-2024-45781 grub2: fs/ufs: OOB write in the heap
When reading a symbolic link's name from a UFS filesystem, grub2 fails to validate the string length taken as an input. The lack of validation may lead to a heap Out-of-bounds write, causing data integrity issues and eventually allowing an attacker to circumvent secure boot protections.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2025:6990 https://access.redhat.com/errata/RHSA-2025:6990
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 10
Via RHSA-2025:16154 https://access.redhat.com/errata/RHSA-2025:16154
Bugzilla
CVE-2024-45783 grub2: fs/hfs+: refcount can be decremented twice
bugzilla·2025-02-14·CVSS 4.4
CVE-2024-45783 [MEDIUM] CVE-2024-45783 grub2: fs/hfs+: refcount can be decremented twice
CVE-2024-45783 grub2: fs/hfs+: refcount can be decremented twice
When failing to mount a HFS+ grub hfsplus filesystem driver doesn't properly set a ERRNO value. This may lead to a NULL pointer access.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2025:6990 https://access.redhat.com/errata/RHSA-2025:6990
Bugzilla
CVE-2024-45776 grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write and Read.
bugzilla·2025-01-21·CVSS 6.7
CVE-2024-45776 [MEDIUM] CVE-2024-45776 grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write and Read.
CVE-2024-45776 grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write and Read.
When reading language .mo file in grub_mofile_open(), grub2 fails to verify to a integer overflow when allocating its internal buffer. A crafted .mo file may lead to the buffer size calculation to overflow leading to Out-of-bound reads and writes. An attacker may leverage this flaw to leak sensitive data or overwrite critical data possibly leading to the circumvention of secure boot protections.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2025:6990 https://access.redhat.com/errata/RHSA-2025:6990
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 10
Via RHSA-2025:16154 https://access.redhat.com/er
Bugzilla
CVE-2024-45774 grub2: reader/jpeg: Heap OOB Write during JPEG parsing
bugzilla·2025-01-13·CVSS 6.7
CVE-2024-45774 [MEDIUM] CVE-2024-45774 grub2: reader/jpeg: Heap OOB Write during JPEG parsing
CVE-2024-45774 grub2: reader/jpeg: Heap OOB Write during JPEG parsing
Extra SOF0 marker in JPEG file may lead to a out-of-bounds write. An attacker may leverage this by crafting a malicious JPEG file, leading the grub's JPEG parser to fail the bounds checking in its internal buffer resulting in a out-of-bounds memory write. The possibility of overwriting sensitive information in order to bypass secure boot protections are not discarded.
Discussion:
https://lists.gnu.org/archive/html/grub-devel/2025-02/msg00024.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2025:6990 https://access.redhat.com/errata/RHSA-2025:6990
2024-08-01
Published