CVE-2024-10487

Published Oct 29, 2024

Last updated 16 days ago

Overview

Description
Out of bounds write in Dawn in Google Chrome prior to 130.0.6723.92 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Critical)
Source
chrome-cve-admin@google.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

chrome-cve-admin@google.com
CWE-787

Social media

Hype score
Not currently trending
  1. Actively exploited CVE : CVE-2024-10487

    @transilienceai

    12 Nov 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  2. Actively exploited CVE : CVE-2024-10487

    @transilienceai

    10 Nov 2024

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  3. Actively exploited CVE : CVE-2024-10487

    @transilienceai

    8 Nov 2024

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  4. Google Chrome の緊急アップデート:脆弱性 CVE-2024-10487/10488 を FIX https://t.co/o3bh25e384 #Chrome #Google

    @iototsecnews

    7 Nov 2024

    140 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. “Google Chrome”un “Dawn” qrafik kitabxanasında təhlükəsizlik boşluğu (CVE-2024-10487) aşkar olunub. #ETX #certaz #cybersecurity #kibertəhlükəsizlik #xəbərdarlıq https://t.co/Y7iIXZBY24

    @CERTAzerbaijan

    4 Nov 2024

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. #Google addressed a critical #vulnerability (CVE-2024-10487) in #Chrome, reported by #Apple. #Cybersecurity #infosec https://t.co/XEkzgr2goI https://t.co/pgCpq0eLqu

    @twelvesec

    3 Nov 2024

    46 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. مجددا برای مرورگر کروم ۲ آسیب پذیری با کدهای شناسایی CVE-2024-10487 و CVE-2024-10488 منتشر شده است. آسیب پذیری اول از نوع RCE بوده و آسیب پذیری دوم که مربوط به webRTC مرورگر می باشد موجب کنترل کامل بر روی سیستم قربانی می شود . https://t.co/Y2P1U3epiq https://t.co/OE57u5qtNT

    @AmirHossein_sec

    1 Nov 2024

    26 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Chrome Update Alert Google has issued an update (versions 130.0.6723.91/.92) for all platforms. Patched: CVE-2024-10487: Out-of-Bounds Write CVE-2024-10488: Use After Free Update Chrome now! #CyberSecurity #ChromeUpdate https://t.co/YDRhRbNAED

    @redfoxsec

    1 Nov 2024

    18 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. #CVE Chromium: CVE-2024-10487: Out of bounds write in Dawn https://t.co/CBe1g16g5V

    @ComputerPunks

    31 Oct 2024

    28 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. CRITICAL VULNERABILITIES Google Chrome: Stable Channel Update for Desktop URL: https://t.co/Hxvyb5zmP8 Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8 CVEs: CVE-2024-10487, CVE-2024-10488 #chrome #Google #UPDATETODAY

    @CharyyevPerman

    31 Oct 2024

    27 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. 🚨Update your desktop Google Chrome now! Google has recently fixed two critical security issues in Chrome: 1. Out-of-Bounds Write in Dawn: This flaw CVE-2024-10487 lets attackers manipulate memory through specially designed web pages, potentially executing harmful code or… htt

    @Nourekx

    30 Oct 2024

    86 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  12. Chromium (plus Chrome, Edge, and all other Chromic browsers and apps) just got a Critical-level patch. The bug, CVE-2024-10487, is a memory write flaw, typically the most dangerous sort. Check for 130.0.6723.91 or later… https://t.co/yzrXnQn2X7

    @duckblog

    30 Oct 2024

    196 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Google fixed a critical vulnerability in Chrome browser: Google addressed a critical vulnerability in its Chrome browser, tracked as CVE-2024-10487, which was reported by Apple. Google has patched a critical Chrome vulnerability, tracked as… https://t.co/heQH7bQWsW https://t.co/b

    @shah_sheikh

    30 Oct 2024

    20 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. wow... (CVE-2024-10487)[375123371][Critical][Dawn][tint]OOB write in Dawn. Lack of proper validation for the @align() attribute in the Tint compiler. https://t.co/prk7MxFlLW Reported by Apple Security Engineering and Architecture https://t.co/3Bv6QYTtJc

    @xvonfers

    30 Oct 2024

    950 Impressions

    1 Retweet

    12 Likes

    5 Bookmarks

    0 Replies

    0 Quotes

  15. Google Patches Critical Chrome Vulnerability Reported by Apple: Google has patched CVE-2024-10487, a critical Chrome vulnerability, and Mozilla has patched high-severity flaws in Firefox. The post Google Patches Critical Chrome Vulnerability Reported… https://t.co/simXmOnoxS ht

    @shah_sheikh

    30 Oct 2024

    32 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. Google fixes CVE-2024-10487 and CVE-2024-10488 in latest Chrome version #GoogleChrome #CVE-2024-10487 #CVE-2024-10488 https://t.co/saE7xP3PSE

    @pravin_karthik

    30 Oct 2024

    41 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  17. Chromeで重大(Critical)な脆弱性が修正。CVE-2024-10487はDawnグラフィックライブラリにおける境界外書き込み。深刻度高の解放後メモリ使用CVE-2024-10488も修正されている。 https://t.co/PoLoJST68s

    @__kokumoto

    30 Oct 2024

    614 Impressions

    2 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. CVE-2024-10487 Out of bounds write in Dawn in Google Chrome prior to 130.0.6723.92 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromiu… https://t.co/hPzSl4pEUR

    @CVEnew

    29 Oct 2024

    31 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes