Google Chrome: CVE-2024-7534 and CVE-2024-7535

Google Chrome: CVE-2024-7534 and CVE-2024-7535

August 7, 2024

We are excited to announce the discovery and reporting of two critical vulnerabilities in the Google Chrome browser that impact the JavaScript engine “V8” and the rendering engine “Blink.” The assigned CVE identifiers are CVE-2024-7534 and CVE-2024-7535.

These vulnerabilities could be exploited by malicious actors to compromise the browser, putting user data and privacy at risk. Upon discovering these issues, Tashita promptly reported them to Google. Working together with their security team, the vulnerabilities were addressed, and a new Chrome update has been released to protect users.

“Our mission is to enhance software security, ensuring a safer experience for technology users,” said Javier Tejedor, CEO of Tashita. “We appreciate Google’s swift response, effective handling, and resolution of the vulnerabilities, which enhance security for Chrome users.”

Vulnerabilities Details:

  • CVE-2024-7534: Heap buffer overflow in Blink Layout.
  • CVE-2024-7535: Inappropriate implementation in V8.

We strongly recommend that all users update to the latest version of Chrome immediately.

Once Google makes the vulnerabilities public, we will provide an in-depth analysis on our blog.

For more information about the vulnerabilities and the Chrome update, visit Chrome Releases Blog.

Google Chrome: CVE-2024-7534 and CVE-2024-7535

Google Chrome: CVE-2024-7534 and CVE-2024-7535

August 7, 2024

We are excited to announce the discovery and reporting of two critical vulnerabilities in the Google Chrome browser that impact the JavaScript engine “V8” and the rendering engine “Blink.” The assigned CVE identifiers are CVE-2024-7534 and CVE-2024-7535.

These vulnerabilities could be exploited by malicious actors to compromise the browser, putting user data and privacy at risk. Upon discovering these issues, Tashita promptly reported them to Google. Working together with their security team, the vulnerabilities were addressed, and a new Chrome update has been released to protect users.

“Our mission is to enhance software security, ensuring a safer experience for technology users,” said Javier Tejedor, CEO of Tashita. “We appreciate Google’s swift response, effective handling, and resolution of the vulnerabilities, which enhance security for Chrome users.”

Vulnerabilities Details:

  • CVE-2024-7534: Heap buffer overflow in Blink Layout.
  • CVE-2024-7535: Inappropriate implementation in V8.

We strongly recommend that all users update to the latest version of Chrome immediately.

Once Google makes the vulnerabilities public, we will provide an in-depth analysis on our blog.

For more information about the vulnerabilities and the Chrome update, visit Chrome Releases Blog.

Our Services

Consultancy & Fuzzing Pro

Specialized in fuzzing and consulting to detect high-impact vulnerabilities.

Vulnerability Research

Explore our tailored research to uncover hidden vulnerabilities and threats.

Expert Software Hardening

Specialists in bypass protection, adding top-tier defenses to your software.

Custom Fuzzing Development

Developing custom fuzzers tailored to your specific software security needs.