Chrome Security Update: Fixes for Six Vulnerabilities

Home/google, Internet Security, Security Advisory, Security Update, vulnerability/Chrome Security Update: Fixes for Six Vulnerabilities

Chrome Security Update: Fixes for Six Vulnerabilities

Google has released a new Chrome browser update, version 126.0.6478.114/115 for Windows and Mac, and 126.0.6478.114 for Linux. This update, rolling out over the coming days and weeks, addresses multiple security vulnerabilities.

Users are advised to update their browsers to safeguard against potential threats. The official Chrome Log details all changes in this build.

Security Fixes

The latest Chrome update includes six critical security fixes, with notable contributions from external researchers:

  • CVE-2024-6100: Type Confusion in V8 – Reported by Seunghyun Lee (@0x10n) during SSD Secure Disclosure’s TyphoonPWN 2024 on June 4, 2024. This high-severity vulnerability earned a $20,000 reward.
  • CVE-2024-6101: Inappropriate Implementation in WebAssembly – Reported by @ginggilBesel on May 31, 2024. This high-severity issue was awarded $7,000.
  • CVE-2024-6102: Out of Bounds Memory Access in Dawn – Reported by wgslfuzz on May 7, 2024. The reward for this high-severity vulnerability is yet to be determined.
  • CVE-2024-6103: Use After Free in Dawn – Also reported by wgslfuzz on June 4, 2024. The reward remains to be determined.

Google has restricted access to bug details and links until most users have updated their browsers, ensuring vulnerabilities are not exploited before users are protected.

Google’s internal security team has also been actively identifying and fixing vulnerabilities using tools like AddressSanitizer, MemorySanitizer, and libFuzzer. They thank all researchers who helped prevent security bugs from reaching the stable channel.

For details on switching release channels or reporting issues, visit the Chrome Security Page and the community help forum.

By | 2024-07-17T01:38:11+05:30 June 19th, 2024|google, Internet Security, Security Advisory, Security Update, vulnerability|

About the Author:

FirstHackersNews- Identifies Security

Leave A Comment

Subscribe to our newsletter to receive security tips everday!