Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Chuzo Login

    Top Cooking Websites For Food Bloggers

    Katy Perry Goes To Space!

    Facebook X (Twitter) Instagram
    Tech Empire Solutions
    • Home
    • Cloud
    • Cyber Security
    • Technology
    • Business Solution
    • Tech Gadgets
    Tech Empire Solutions
    Home » Urgent: New Chrome zero-day exploit widely exploited
    Cyber Security

    Urgent: New Chrome zero-day exploit widely exploited

    techempireBy techempireNo Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email

    ReportDecember 21, 2023Editorial DepartmentVulnerabilities/Zero-days

    New Chrome zero-day vulnerability

    Google has rolled out a security update for its Chrome web browser to address a critical zero-day vulnerability that it says has been widely exploited.

    This vulnerability has been assigned a CVE identifier CVE-2023-7024has been described as a stack-based buffer overflow bug in the WebRTC framework that can be exploited to cause program crashes or arbitrary code execution.

    The vulnerability was discovered and reported on December 19, 2023 by Clément Lecigne and Vlad Stolyarov of Google’s Threat Analysis Group (TAG).

    No other details about the security flaw have been released to prevent further abuse, and Google acknowledged that “CVE-2023-7024 exists in the wild.”

    Given that WebRTC is an open source project and is also supported by Mozilla Firefox and Apple Safari, it’s unclear whether the flaw will have any impact outside of Chrome and Chromium-based browsers.

    This development marks the eighth actively exploited zero-day vulnerability in Chrome since the beginning of the year.

    According to data compiled by Qualys, a total of 26,447 vulnerabilities have been disclosed so far in 2023, more than 1,500 more CVEs than the previous year, with 115 of them being exploited by threat actors and ransomware groups.

    Internet security

    Remote code execution, security feature bypass, buffer manipulation, privilege escalation, and input validation and parsing flaws have become the most common types of vulnerabilities.

    Users are recommended to upgrade to Chrome version 120.0.6099.129/130 on Windows and 120.0.6099.129 on macOS and Linux to mitigate potential threats.

    Users of Chromium-based browsers such as Microsoft Edge, Brave, Opera, and Vivaldi are also advised to apply fixes when they become available.

    Did you find this article interesting?follow us Twitter  and LinkedIn to read more exclusive content from us.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    techempire
    • Website

    Related Posts

    Ongoing campaign bombards businesses with spam emails and phone calls

    6 common mistakes organizations make when deploying advanced authentication

    New Chrome zero-day vulnerability CVE-2024-4761 is being actively exploited

    Microsoft patches 61 flaws, including two actively exploited zero-day vulnerabilities

    Dutch court sentences Tornado Cash co-founder to 5 years in prison for money laundering

    Migrate from VMware vSphere to Microsoft Azure

    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    Chuzo Login

    Top Cooking Websites For Food Bloggers

    Katy Perry Goes To Space!

    Mr. Meowski’s Bakery To Re-Locate In St. Charles MO

    Legal Pages
    • About Us
    • Disclaimer
    • DMCA
    • Privacy Policy
    Our Picks

    Gateway Studios High-Tech Recording Studio To Open In Chesterfield, Missouri

    Edufox

    Emerging Academic Education Platforms – Sponsored By Edufox

    Top Reviews

    Type above and press Enter to search. Press Esc to cancel.