Google Releases Security Update to Fix Fifth Zero-Day Vulnerability in Chrome Browser

https://icaro.icaromediagroup.com/system/images/photos/16208870/original/open-uri20240510-76-j8nes6?1715376448
ICARO Media Group
News
10/05/2024 21h26

In response to ongoing security concerns, Google has released a new security update for its popular Chrome browser. This update aims to address the fifth zero-day vulnerability that has been exploited since the beginning of this year.

The specific vulnerability, named CVE-2024-4671, is classified as a high-severity issue. It relates to a "user after free" vulnerability within the Visuals component of the browser. This component handles the rendering and display of content. The flaw was discovered by an anonymous researcher and reported to Google. The company has confirmed that this vulnerability is likely being actively exploited in the wild.

A "user after free" vulnerability refers to a security flaw that occurs when a program continues to use a pointer after the memory it points to has been freed. This can potentially lead to data leakage, code execution, or system crashes. As such, it is crucial for Google to address and fix this vulnerability promptly.

Google has rolled out the necessary updates to address the issue. For Mac and Windows users, the updates are labeled as 124.0.6367.201 and 124.0.6367.202, while Linux users can expect version 124.0.6367.201. The updates will be gradually released over the coming days and weeks.

Users can ensure they have the latest version of Chrome by checking the Settings > About Chrome section. If an update is available, it will automatically be installed. To complete the update, users will need to click the "Relaunch" button.

This latest zero-day vulnerability is the fifth to be addressed by Google this year alone. Three other vulnerabilities were discovered during the Pwn2Own hacking contest in March 2024. The complete list of fixed zero-day vulnerabilities since the beginning of 2024 includes the ones mentioned above, although further details regarding the specific vulnerabilities have not been disclosed.

Google's prompt response in addressing these security concerns highlights their commitment to user safety and cybersecurity. It is recommended that all Chrome users update their browsers to the latest version to mitigate any potential risks associated with these vulnerabilities.

The views expressed in this article do not reflect the opinion of ICARO, or any of its affiliates.

Related