Two security released last week for the Chrome browser fix eight vulnerabilities, six of which are high severity and were reported by external researchers.

Three of the security flaws disclosed by the internet giant via an update affect the browser's V8 JavaScript engine. They include issues related to two types as well as a buffer overflow.
See more: Vulnerabilities in Microsoft apps put macOS systems at risk
The fourth vulnerability addressed last week concerns a buffer overflow in Skia, the open-source 2D graphics library used by Chrome, Firefox , and other browsers.
All four vulnerabilities were resolved in Chrome versions 128.0.6613.113/.114 for Windows and macOS, as well as version 128.0.6613.113 for Linux. Google said it has not yet determined the bug bounties that will be awarded for these issues.
External bugs reported include a free use of WebAudio, for which Google offered a $7,000 bounty, as well as an out-of-bounds write in the V8 engine, for which the bounty has not yet been determined.
Chrome versions 128.0.6613.119/.120 for Windows and macOS, as well as version 128.0.6613.119 for Linux, have been released with updates that fix all security issues.

Read also: sedexp: A Linux malware that remained hidden for two years
Google doesn't list any of these vulnerabilities as being exploited in the wild, but the internet giant's rapid pace of release suggests it's a good idea to update your browser as soon as possible.
Source: securityweek
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
