Zero-Day Alert: Google Issues Patch for New Chrome Vulnerability

June 6, 2023Ravi LakshmananBrowser security/vulnerability

Chrome vulnerabilities

Google released a security update Monday to fix a high-severity flaw in its Chrome web browser, saying the flaw is being actively exploited in the wild.

tracked CVE-2023-3079, the vulnerability is described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google’s Threat Analysis Group (TAG) allegedly reported this issue on June 1, 2023.

According to NIST’s National Vulnerability Database (NVD), “Google Chrome V8 prior to 114.0.5735.110 could allow a remote attacker to exploit heap corruption via a crafted HTML page due to type confusion. ”

As usual, the tech giant declined to detail the nature of the attack, but said it was “aware that an exploit for CVE-2023-3079 exists in the wild.”

cyber security

With the latest developments, Google has addressed a total of three zero-days actively exploited in Chrome since the beginning of the year.

We recommend upgrading to version 114.0.5735.110 for Windows and 114.0.5735.106 for macOS and Linux to mitigate potential threats. Users of Chromium-based browsers such as Microsoft Edge, Brave, Opera, and Vivaldi are also encouraged to apply the fix as soon as it becomes available.

Did you enjoy this article? Follow us twitter You can read more exclusive content we post on LinkedIn.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *