Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://issues.chromium.org/issues/341803763 |
|
History
Thu, 02 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft windows |
Tue, 24 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome |
|
| Weaknesses | CWE-20 | |
| CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Google
Google chrome |
|
| Metrics |
cvssV3_1
|
Mon, 23 Sep 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium) | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published: 2024-09-23T22:39:06.278Z
Updated: 2024-09-24T19:04:05.187Z
Reserved: 2024-07-23T13:09:16.764Z
Link: CVE-2024-7023
Updated: 2024-09-24T19:03:57.389Z
Status : Analyzed
Published: 2024-09-23T23:15:10.527
Modified: 2025-01-02T16:53:18.803
Link: CVE-2024-7023
No data.