High severity8.8NVD Advisory· Published May 22, 2024· Updated Jun 17, 2026
CVE-2024-5159
CVE-2024-5159
Description
Heap buffer overflow in ANGLE in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
16- osv-coords11 versionspkg:apk/chainguard/chromiumpkg:apk/chainguard/chromium-docker-selenium-compatpkg:apk/wolfi/chromium-docker-selenium-compatpkg:apk/chainguard/chromium-langpkg:apk/wolfi/chromium-langpkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:apk/wolfi/chromiumpkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.5pkg:apk/wolfi/chromium-qtpkg:apk/chainguard/chromium-qtpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP5
< 125.0.6422.112-r0+ 10 more
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.76-1.1
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.76-bp155.2.85.2
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.112-r0
- (no CPE)range: < 125.0.6422.76-bp155.2.85.2
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- issues.chromium.org/issues/335613092nvdExploitIssue Tracking
- chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_21.htmlnvdRelease Notes
- lists.fedoraproject.org/archives/list/[email protected]/message/5KEVD4433KTOCYY6V4I7MMYKQ6URUS4L/nvdMailing List
- lists.fedoraproject.org/archives/list/[email protected]/message/FX6IYZ6XF7B2WE66NFPNI2NHWJFI6VDF/nvdMailing List
News mentions
0No linked articles in our index yet.