Google · Google Chrome · CVE-2024-5842
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 126.0.6478.54
Microsoft Edge (affected versions not specified)
**Description**
The issue is related to a use after free in the Browser UI, which can be exploited by a remote attacker to perform an out of bounds memory read via a crafted HTML page. This can happen if the attacker convinces a user to engage in specific UI gestures. The estimated number of potentially affected devices is not provided.
**Recommendations**
For Google Chrome versions prior to 126.0.6478.54, update to version 126.0.6478.54 or later to resolve the issue.
For Microsoft Edge, at the moment, there is no information about a newer version that contains a fix for this vulnerability.