サイバーセキュリティ

The 2022 Updated version of Chrome Browser Now to Patch New Actively Exploited Zero-Day Flaw

The 2022 Updated version of Chrome Browser Now to Patch New Actively Exploited Zero-Day Flaw Google on Thursday released software updates to address yet another zero-day flaw in its Chrome web browser. Tracked as CVE-2022-4135, the high-severity vulnerability has been described as a heap buffer overflow in the GPU component. Clement Lecigne of Google’s Threat Analysis Group (TAG) has been credited with reporting the flaw on November 22, 2022. Heap-based buffer overflow bugs can be weaponized by threat actors to crash a program or execute arbitrary code, leading to unintended behavior. “Google is aware that an exploit for CVE-2022-4135 exists in the wild,” the tech giant acknowledged in an advisory. […]

続きを読む