Upstream information

CVE-2024-2887 at MITRE

Description

Type Confusion in WebAssembly in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

Upstream Security Advisories:

SUSE information

Overall state of this security issue: Does not affect SUSE products

This issue is currently rated as having moderate severity.

SUSE Bugzilla entry: 1222035 [RESOLVED / DUPLICATE]

No SUSE Security Announcements cross referenced.

List of released packages

Product(s) Fixed package version(s) References
openSUSE Leap 15.5 NonFree
  • opera >= 109.0.5097.38-lp155.3.42.1
Patchnames:
openSUSE-2024-109
openSUSE Tumbleweed
  • nodejs-electron >= 28.2.10-1.1
  • nodejs-electron-devel >= 28.2.10-1.1
  • nodejs-electron-doc >= 28.2.10-1.1
Patchnames:
openSUSE Tumbleweed GA nodejs-electron-28.2.10-1.1


SUSE Timeline for this CVE

CVE page created: Tue Mar 26 23:00:14 2024
CVE page last modified: Thu Apr 18 16:40:50 2024