Multiple Vulnerabilities in Microsoft Edge (Chromium-based) Could Allow for Arbitrary Code Execution
ID: 5055e1ac-1053-5334-aeea-41d01a017471
STIX ID: report--5055e1ac-1053-5334-aeea-41d01a017471
Feed Name: CISecurity.org Advisories
Multiple critical vulnerabilities were disclosed in Microsoft Edge (Chromium-based), including several remote code execution flaws (heap-based buffer overflows, integer/integer wraparound, buffer over-read, type confusion, use-after-free) and a spoofing vulnerability, referenced by CVE-2024-43587, CVE-2024-43566, CVE-2024-43578, CVE-2024-43579, CVE-2024-43595, CVE-2024-43596, CVE-2024-49023 and CVE-2024-43580; successful exploitation could permit arbitrary code execution in the context of the logged-on user, typically requiring a victim to click a malicious link or more preparatory actions by an attacker.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
