Google Chrome Issues Third Urgent Security Update in Three Weeks to Fix Critical Vulnerabilities

October 5, 2024
Google Chrome Issues Third Urgent Security Update in Three Weeks to Fix Critical Vulnerabilities
  • Google's Chrome web browser, with nearly 3.5 billion users, has recently undergone significant security updates to address multiple vulnerabilities.

  • This marks the third urgent security update for Chrome in just three weeks, affecting all platforms except iOS.

  • The latest update includes versions 129.0.6668.89/.90 for Windows and macOS, 129.0.6668.89 for Linux, and 129.0.6668.81 for Android.

  • Among the high-severity flaws fixed in this update are an integer overflow in Layout, insufficient data validation in Mojo, and inappropriate implementation in V8.

  • The update also addresses critical vulnerabilities including CVE-2024-7025, CVE-2024-9369, and CVE-2024-9370, which could lead to severe security risks.

  • Additionally, three memory safety bugs that could be exploited for arbitrary code execution have been patched.

  • Fortunately, there are currently no reports indicating that these vulnerabilities have been actively exploited.

  • Users are strongly encouraged to update their browsers promptly, as automatic updates may take days or weeks.

  • To ensure protection, users should manually update their Chrome browser via the Help|About option and restart the application after installation.

  • Meanwhile, the ChromeLoader malware continues to pose a threat, with attackers employing sophisticated tactics to hijack browser sessions.

  • Recent ChromeLoader attacks have utilized malvertising to lure users into downloading fake productivity tools, often masquerading as legitimate PDF converters.

  • In a related note, Mozilla has also released updates for Firefox, addressing 13 vulnerabilities, with seven categorized as high severity, primarily impacting Android users.

Summary based on 3 sources


Get a daily email with more Tech stories

More Stories