Google fixes one more Chrome zero-day exploited at Pwn2Own
ID: fcf2d6be-63d2-5912-b8c0-3f4f65e40aed
STIX ID: report--fcf2d6be-63d2-5912-b8c0-3f4f65e40aed
Feed Name: Bleeping Computer
Threat Score
Google released patches for a high-severity Chrome V8 zero-day (CVE-2024-3159) exploited during Pwn2Own Vancouver 2024, where researchers demonstrated a double-tap heap-corruption exploit enabling out-of-bounds reads and arbitrary code execution; the fix is included in Chrome 123.0.6312.105/.106/.107. The article also notes other Chrome and Firefox zero-days addressed from the contest and recent Android Pixel fixes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
