alpine · CVE-2024-5836

Quick triage

Priority: not assigned Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2024-5836: 1 source package rows (qt6-qtwebengine); 3 state rows across 3 repos (3.21-community, 3.22-community, edge-community); fixed 3, open 0.

Description:

Inappropriate Implementation in DevTools in Google Chrome prior to 126.0.6478.54 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: High)

cvelogic Threat Intelligence