logo

Google fixes one more Chrome zero-day exploited at Pwn2Own

ID: fcf2d6be-63d2-5912-b8c0-3f4f65e40aed

STIX ID: report--fcf2d6be-63d2-5912-b8c0-3f4f65e40aed

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-04-03

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Google released patches for a high-severity Chrome V8 zero-day (CVE-2024-3159) exploited during Pwn2Own Vancouver 2024, where researchers demonstrated a double-tap heap-corruption exploit enabling out-of-bounds reads and arbitrary code execution; the fix is included in Chrome 123.0.6312.105/.106/.107. The article also notes other Chrome and Firefox zero-days addressed from the contest and recent Android Pixel fixes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.