Google has released Chrome version 99.0.4844.84 for Windows, Mac, and Linux users, to address a serious zero-day bug already being exploited by cybercriminals.

"Google is aware of an exploit for the CVE-2022-1096 bug," the company said in a security advisory published on Friday.
Version 99.0.4844.84 is already rolling out worldwide to the Stable Desktop channel , and Google says it will reach all users in the coming weeks.
See also: 2021: We had a record number of Chrome zero-days exploited by hackers
You can check for new updates by going to the Chrome menu > Help > About Google Chrome.
The Google Chrome browser also automatically checks for new updates and installs them after the next launch.
Google: Did not disclose details
The zero-day bug is known as CVE-2022-1096 and is a serious “type confusion weakness” found in Chrome’s V8 JavaScript engine. Google learned about the vulnerability from an anonymous security researcher.
Successful exploitation of type confusion bugs usually leads to browser crashes, while attackers can also use them to execute code.
See also: Sophos Firewall: Critical vulnerability allows remote code execution

Although Google said it had detected attacks exploiting this Chrome zero-day bug, it did not share technical details.
"Access to bug details and links may remain limited until the majority of users have applied the update," Google said.
See also: “Escobar” banking trojan steals Google Authenticator MFA codes
Second update to fix Chrome zero-day bug this year
With this update, Google has addressed the second Chrome zero-day vulnerability this year. The first bug was CVE-2022-0609, which was patched last month.
Google Threat Analysis Group (TAG) revealed that state- hackers from North Korea have been using the CVE-2022-0609 zero-day since January.
Source: Bleeping Computer
