In a critical update to improve user security, Google has released an emergency patch for its widely used Chrome browser, fixing multiple high-severity flaws.
See also: Okta Verify Agent Vulnerability Allows Password Theft

The update brings Chrome to version 130.0.6723.116 or version 130.0.6723.117, for Windows and Mac on the Extended Stable channel.
This Chrome patch was released on November 5, 2024, after the discovery of two critical flaws, CVE-2024-10826 and CVE-2024-10827.
Which Chrome vulnerabilities are fixed
CVE-2024-10826: This vulnerability involves a use-after-free error in the Family Experiences component of Chrome, which could lead to arbitrary code execution or system compromise . CVE-2024-10827: The serial component also had another use-after-free issue, which could similarly lead to security breaches.
Both Chrome flaws fixed by the update have been classified with a high severity level, emphasizing the critical nature of their threats.
See also: Vulnerabilities and attacks affecting 5G networks
Google has confirmed that these flaws could allow attackers to execute malicious code on affected systems, potentially leading to unauthorized access or a complete system compromise.

The flaws are significant because they could allow attackers to control users' systems by exploiting memory corruption in the browser.
Recommended for users:
Update Chrome: Make sure your browser is up to date to version 130.0.6723.116 or later.
Enable automatic updates: Reduces your window of vulnerability by ensuring you have the latest security patches.
Regularly check for security patches: Monitor Google's security updates for any additional measures or patches.
Google has emphasized the importance of such updates to protect users from these and similar future flaws in the Chrome browser.
See also: CISA warns of critical flaws in ICS systems
Google Chrome frequently releases updates to improve the user experience, enhance security, and add new features. The update process usually happens automatically, ensuring that most users are always running the latest version without requiring manual intervention. Updates usually include important security patches that protect against newly discovered vulnerabilities, making them crucial for keeping your browsing data safe. Users to check for updates regularly if automatic updates are not enabled and to restart their browsers to immediately apply any recently downloaded updates.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
Source: cybersecuritynews
