ZeroHour

CVE-2023-4762

KEVmass

Chromium V8 Type Confusion (CVE-2023-4762) Enables RCE via Crafted Web Pages

CISA: Google Chromium V8 Type Confusion Vulnerability

CVSS 3.1
8.8 high
EPSS
41%p99
Published
()
KEV added
AI analysis

CVE-2023-4762 is a type confusion bug (CWE-843) in the V8 JavaScript engine used by Google Chromium, allowing a remote attacker to execute arbitrary code in the context of the browser when a user visits or is redirected to a crafted HTML page. Because V8 is shared across Chromium-based browsers, the flaw affects Google Chrome, Microsoft Edge, Opera, and other Chromium derivatives, not just Chrome itself. Successful exploitation gives an attacker code execution within the browser process on the victim's machine, a common foothold for delivering further malware. Google patched the bug in Chrome 116.0.5845.179/.180 (September 2023); any Chromium-based browser built on unpatched V8 remains vulnerable, and no public proof-of-concept is known. CISA added CVE-2023-4762 to the Known Exploited Vulnerabilities catalog on 2024-02-06, confirming exploitation in the wild (ransomware use unconfirmed), and EPSS assigns a ~41% probability of exploitation within 30 days (99th percentile).

What to do: Patch all Chromium-based browsers fleet-wide to Chrome 116.0.5845.179/.180 or later and each vendor's equivalent (current Edge, Opera, Brave, etc.), consistent with the CISA KEV required action to apply vendor mitigations or discontinue use. Verify Chromium/V8 browser versions in your endpoint inventory before and after rollout; since exploitation is triggered by a crafted web page, interim mitigations include restricting unpatched machines' browsing and warning users about unsolicited links.

Affected
Google Chromium V8Prior to the September 2023 fix (Chrome 116.0.5845.179/.180 per Google's stable channel advisory); source data does not specify an exact affected range
Google Chrome (ships affected V8)Chrome versions before 116.0.5845.179 (Windows/macOS) and 116.0.5845.180 (Linux), per Google's advisory
Microsoft Edge (Chromium-based, uses V8)
Opera (Chromium-based, uses V8)
Estimated exposure
massbillions of users (Chromium-based browsers dominate global usage; Chrome alone has ~3+ billion users) — Estimated from Chromium's dominance of the browser market (Chrome holds roughly 65% of global browser share, with Edge, Opera, Brave and many Electron apps on the same V8 engine), implying billions of installations, of which only unpatched…

Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.

Description

Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

CISA Known Exploited Vulnerability
Affected
Google Chromium V8
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Due date
Ransomware use
Unknown
Vendors
googledebianfedoraprojectmicrosoft
Products
chrome, debian linux, fedora, edge chromium
Weakness
CWE-843
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news