Google warns of 5 serious security holes in Chrome, recommends users to update the patch immediately
Specifically, the identifiers of these 5 errors are CVE-2021-3798x (where x is the ordinal numbers from 1 to 5). These 5 new vulnerabilities have extremely high severity, which could put 2.6 billion users at risk. This includes the "use after free" vulnerability and the buffer overflow vulnerability.
The "use after free" vulnerability stems from a weakness in WebGL (a web graphics library) - a JavaScript API for rendering interactive 2D and 3D graphics in the browser. If successfully exploited this vulnerability, hackers can break the structure and modify the data in Chrome's executable memory. The hacker can then take over and perform remote code execution attacks on the affected victim's computer or software.
These 5 critical security vulnerabilities were discovered through the Security Rewards program (GPSRP) or simply called "bug hunt" by independent researchers.
After receiving reports of vulnerabilities, Google has developed and released patches for these 5 dangerous security flaws through Chrome update 95.0.4638.54.
Google also recommends that users update to this latest version of Chrome soon to patch these serious security holes.
If you haven't updated your Google Chrome browser to the latest version, do so now to avoid possible dangers caused by the above vulnerabilities.
You should read it
- Google launched Chrome 87: performance increased sharply
- Google Chrome has an urgent update, patching a serious zero-day vulnerability being exploited by hackers
- Latest Chrome update causes Full Disk status, even on SSDs
- Google urged Chrome users to update the new version immediately to fix the vulnerability
- How to Update Google Chrome Browser
- How to replace the new tab wallpaper on Chrome
- Google Chrome released Chrome 15 beta
- Warning: Chrome 79 for Android has data deletion errors, users should not update
May be interested
- Update the IE patch immediatelynearly 2 million computers using ie browsers are affected, 10,000 websites infected and spreading malicious code exploiting errors is the number that confuses ie users
- Older iPhone users should update to iOS 16.7.6 immediatelyalong with ios 17.4, apple also officially launched the ios 16.7.6 update to patch dangerous security holes for older iphone models, including iphone 8, iphone 8 plus and iphone x.
- Microsoft has released a critical update for Windows 10, users need to update nowmicrosoft recently released a critical update for windows 10 as well as windows server 2016 and windows server 2019 to fix a security vulnerability discovered by the u.s. national security agency (nsa) on april 14. 1 past.
- Warning of dangerous vulnerabilities on WinRAR, users should uninstall or upgrade to a new versionrarlab, the developer of winrar, has just released an urgent update to patch a dangerous vulnerability in their software.
- Google Chrome has an urgent update, patching a serious zero-day vulnerability being exploited by hackersgoogle has just released chrome 91.0.4472.101 emergency update for windows, mac and linux to patch 14 security holes. among these is a critical zero-day vulnerability (cve-2021-30551) that is being actively exploited by hackers.
- Serious security vulnerability on AMD CPUs has been patchedusers need to update the microcode patch immediately to ensure security.
- Discovered seven extremely serious security holes in Google Chromegoogle is urging users to update google chrome immediately after discovering seven extremely critical vulnerabilities.
- Users who have not updated the WinRAR patch, despite being warned, continue to take advantage of the vulnerability to insert malicious code.winrar programmers have released a patch update on version 5.70 beta 1, but because many users do not update to the latest version, the problem is not resolved at the root.
- Patches of dangerous vulnerabilities being exploited by hackers contain dangerous holes and then continue to be exploited by hackersnot long after the log4j vulnerability was discovered, the patch was released. however, the irony is that this patch has holes.
- Chrome and Firefox have a serious security flaw, there is no way to fix itthis security flaw first appeared in february, and was later fixed by google via an update to the google chrome browser. however, this security hole has recently reappeared on chrome 67 and most likely has 'evolved' to be harder to destroy than before.