HomeSecurityGoogle Chrome fixed critical vulnerabilities

Google Chrome fixed critical vulnerabilities

Google has released a critical security update for its Chrome browser, addressing multiple vulnerabilities that could compromise user security.

Google Chrome vulnerabilities

The new update, version 131.0.6778.85/.86 for Windows and Mac and 131.0.6778.85 for Linux, will be distributed gradually over the coming days and weeks.

The update includes three key security fixes, with one particularly notable one:

  • High Severity Vulnerability: A type confusion issue was identified and fixed in V8, Chrome's JavaScript engine . This vulnerability , codenamed CVE-2024-11395, was reported anonymously on November 5, 2024, and Google offered an $8,000 bounty for this critical discovery.
  • Internal security improvements: Google's internal security team has implemented various fixes from checks, obfuscation, and other security initiatives.

Read more: Chrome: Vulnerabilities allow hackers to execute arbitrary code

Google doesn't just limit itself to reactive browser security patches. It uses a range of advanced techniques to detect and prevent security issues, including AddressSanitizer, MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity, libFuzzer, and AFL (American Fuzzy Lop). These tools help identify potential vulnerabilities before they are exploited by malicious actors.

To inform and protect users, Google takes a cautious approach to releasing updates:

  • Access to error details and links may be restricted until the majority of users receive the update.
  • The limitations may remain if the bug affects third-party libraries that have not yet been fixed.

Google thanked all the security researchers who worked together during the development cycle to prevent security from reaching the stable channel. This ongoing collaboration with the security research community is critical to keeping Chrome secure.

Google Chrome vulnerabilities

See also: Chrome: Code update for Type Confusion vulnerabilities

Although the update is distributed automatically, users are advised to:

  • Check the current version of Chrome.
  • Update manually if necessary.
  • Make sure automatic updates are enabled for future security updates.

By immediately applying this security update, Chrome users can significantly reduce their exposure to potential threats and enjoy a safer browsing experience.

Source: cybersecuritynews

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SecNews
SecNewshttps://www.secnews.gr
In a world without fences and walls, who needs Gates and Windows

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS