Whilst you’re shopping online for Black Friday today, do your self a favor and replace Chrome. On Thursday, Google started rolling out a brand new secure channel replace for the Chrome browser on Home windows, Mac, and Linux to patch a zero-day exploit that exists within the wild. For those who haven’t already, examine and ensure your browser is up to date to not less than model 107.0.5304.121 for Mac and Linux and 107.0.5304.121/.122 for Home windows.
Google’s Prudhvikumar Bommana says on the Chrome Releases blog that CVE-2022-4135 is a high-severity flaw regarding heap buffer overflow in GPU.
In keeping with BleepingComputer, heap buffer overflow “is a reminiscence vulnerability leading to knowledge being written to forbidden (normally adjoining) areas with out examine.” Hackers can use this vulnerability to overwrite an app’s reminiscence to control its execution path. After that, they will then entry restricted info and execute arbitrary code.
As common, we don’t really know the way hackers are exploiting this safety flaw.
“Entry to bug particulars and hyperlinks could also be saved restricted till a majority of customers are up to date with a repair,” Google explains. “We may even retain restrictions if the bug exists in a third-party library that different tasks equally rely on, however haven’t but mounted.”
That is the eighth Chrome zero-day exploit that Google has patched in 2022. The one earlier than this surfaced on November 1 and involved a type confusion weakness.
How you can replace your Chrome browser
Chrome doesn’t at all times apply the newest updates while you open the browser, so if you wish to examine and see which model you might be operating, go to Settings after which About Chrome on the backside of the menu bar on the left facet of the display.
If you’re already operating the newest model of the browser, then you might be good to go. If not, you must start the method of updating as quickly as doable. As soon as it finishes downloading, click on the Relaunch button to complete updating.
Extra Google protection: For extra Pixel information, go to our Pixel 7 guide.