While you were out trick or treating on Halloween night, Google engineers released a warning about a new Chrome security flaw.
On Oct. 31, Google shared informationregarding two recently discovered vulnerabilities. The search giant has confirmed that a zero-day exploit exists for one of these security issues.
A zero-day exploit is basically when a nefarious party discovers a bug they can use for a cyber attack before the original developer can issue a fix.
Google released a security update to fix the problem that will roll out automatically to all users in the coming days and weeks. Users can manually update Google Chrome immediately by going to the “About Google Chrome” section in the menu bar.
“This version addresses vulnerabilities that an attacker could exploit to take control of an affected system,” said a statementreleased by the U.S. Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA).
Google hasn’t divulged many details about the flaws, which the company says is for security purposes.
“Access to bug details and links may be kept restricted until a majority of users are updated with a fix,” reads the security alert from Google. “We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.”
However, here’s what we know so far. The two vulnerabilities, CVE-2019-13720 and CVE-2019-13721, are considered “use-after-free” flaws. This is when an application attempts to reference previously used memory after it’s been freed or deleted. When this occurs, bad actors can exploit the memory corruption to execute malicious code.
One of the two Chrome bugs affect the PDFium library, which generates PDFs. The other, which has a zero-day exploit in the wild, involves Chrome’s audio component.
The discoverywas made by Anton Ivanov and Alexey Kulaev, two researchers from the cybersecurity firm Kaspersky.
Google Chrome’s last major security vulnerability involving a zero-day exploit occurred just earlier this year. The company pushed out an update in March after a memory management error involving FileReader was discovered.
Copyright © 2023 Powered by
Google revealed a security flaw on Halloween, so maybe update Chrome now-鼓盆之戚网
sitemap
文章
68493
浏览
86334
获赞
83825
You can now watch YouTube with iPhone's Picture in Picture mode without a premium account
This is a pleasant surprise: YouTube's mobile website now allows Picture in Picture mode on an iPhonIguana, who answers to no man, wreaks havoc at the Miami Open tennis tournament
For tennis fans, the sport is a thrill. For everyone else, it's a lot of grunting and running in a cYoungest Ed Sheeran fan immediately stops crying at sound of 'Shape of You'
Ed Sheeran's popularity knows no bounds. His music resonates with people of all ages, even the youngElon Musk's X is losing users in the U.S., UK, and EU. X's own data proves it.
Elon Musk's social media platform X is losing users in two of its most important markets: the U.S. aFaceTime gets an upgrade on iPhone 12, just in time for the pandemic
Apple unveiled its iPhone 12 lineup at its October event, and one feature that should be pretty usefFake Elmo is sad to learn he's out of a job because of Trump's budget cuts
Elmo go bye-bye.Controversy has surrounded Donald Trump's proposed budget, which includes cuts to thBest October Prime Day mesh WiFi deals: Save up to $225 on Google Nest, Netgear
A new router or a mesh WiFi system can be a solution if you deal with an unreliable internet connectApple's new Mac mini has a power button in the most unusual place
Apple's new Mac mini is pretty amazing. It's a machine I dreamed about when I was a kid: a quiet litHere are the best memes of 2019 (so far)
Folks, we are halfway through 2019 and the memes have been strong. Although some of this year's memeMarshall Emberton II hits record
GET $70 OFF:As of Oct. 16, you can get the Marshall Emberton II portable Bluetooth speaker for $99.9Echo Pop is at an all
SAVE $46.99: The Amazon Echo Pop is back at its all-time low price with the added bonus of a TP-LinkTbh, this dog really is the employee of the year, and we quit
There are good dogs and then there are reallygood dogs. And when you have one of the latter—esFacebook tells employees they can work from home until July 2021
Facebook employees will be allowed to work from home for nearly one more year due to the coronavirusWireless earbud deals still live after October Prime Day
UPDATE: Oct. 10, 2024, 4:55 p.m. EDT This post has been updated with the remaining earbud deals follBest kids tablet deal: Save $80 on the Fire HD 10 Kids Pro
SAVE $80: As of Oct. 28, the Fire HD 10 Kids Pro tablet is on sale at Amazon for $109.99. That's 42%