V8 Chrome Engine Grants User Data Access

Google has recently announced the release of an update addressing the tenth vulnerability of the zero-day, which has been actively exploited by attackers or white hackers as part of a competition in 2024.

CVE-2024-7965 (CVSS: 8.8) pertains to an error in the implementation of the V8 engine for JavaScript in the Google Chrome browser. This error allowed remote attackers to utilize a specially crafted HTML page to manipulate the heap.

Damage to the heap can occur due to various reasons, such as improper memory release, buffer overflow, index errors, and other software malfunctions. When the heap is compromised, it can result in unstable operation, unpredictable behavior, or even the sudden termination of the program.

/Reports, release notes, official announcements.