Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Metrics
Affected Vendors & Products
References
History
Sat, 12 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 11 Feb 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google chrome |
|
CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | |
Vendors & Products |
Google
Google chrome |
Fri, 03 Jan 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 18 Dec 2024 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
Weaknesses | CWE-416 | |
References |
|

Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2025-01-03T14:04:36.234Z
Reserved: 2024-12-16T21:02:51.195Z
Link: CVE-2024-12694

Updated: 2025-01-03T14:04:32.711Z

Status : Analyzed
Published: 2024-12-18T22:15:06.397
Modified: 2025-02-11T15:14:57.497
Link: CVE-2024-12694

No data.