Cve-2024-3824. Type confusion in v8 in google chrome prior to 122.0.6261.94 allowed a remote attacker to potentially exploit object corruption via a crafted html page. Both the memset and the return value assume that count == sizeof (php_stream_dirent).


Cve-2024-3824

The information provided in the microsoft knowledge base is provided as is without warranty of any kind. Type confusion in v8 in google chrome prior to 122.0.6261.94 allowed a remote attacker to potentially exploit object corruption via a crafted html page.

Type Confusion In V8 In Google Chrome Prior To 122.0.6261.94 Allowed A Remote Attacker To Potentially Exploit Object Corruption Via A Crafted Html Page.

This means we have a stack information leak and a buffer write overflow.

Microsoft Disclaims All Warranties, Either Express Or Implied,.

Both the memset and the return value assume that count == sizeof (php_stream_dirent).

In Php Version 8.0.* Before 8.0.30, 8.1.* Before 8.1.22, And 8.2.* Before 8.2.8, When Loading Phar File, While Reading Phar Directory Entries, Insufficient Length Checking May.

Images References :

Microsoft Disclaims All Warranties, Either Express Or Implied,.

Type confusion in v8 in google chrome prior to 122.0.6261.94 allowed a remote attacker to potentially exploit object corruption via a crafted html page.

Both The Memset And The Return Value Assume That Count == Sizeof (Php_Stream_Dirent).

In php version 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading phar directory entries, insufficient length checking may.

This Means We Have A Stack Information Leak And A Buffer Write Overflow.