Unrated severityNVD Advisory· Published Nov 12, 2024· Updated Nov 13, 2024
CVE-2024-11116
CVE-2024-11116
Description
Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Affected products
15- osv-coords13 versionspkg:apk/chainguard/chromiumpkg:apk/chainguard/chromium-docker-selenium-compatpkg:apk/chainguard/chromium-langpkg:apk/chainguard/chromium-qtpkg:apk/wolfi/chromiumpkg:apk/wolfi/chromium-docker-selenium-compatpkg:apk/wolfi/chromium-langpkg:apk/wolfi/chromium-qtpkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.5pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP5pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP6
< 131.0.6778.69-r0+ 12 more
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-r0
- (no CPE)range: < 131.0.6778.69-bp155.2.141.1
- (no CPE)range: < 131.0.6778.69-bp156.2.53.1
- (no CPE)range: < 131.0.6778.69-1.1
- (no CPE)range: < 131.0.6778.69-bp155.2.141.1
- (no CPE)range: < 131.0.6778.69-bp156.2.53.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.