Wednesday, April 19, 2023

Critical security patch for Chrome browser

If you visit a malicious web page the Bad Guy can execute code in your browser.  There is exploit code in the wild, so update your Chrome browser.

The vulnerability, tracked as CVE-2023-2033, can be exploited by a malicious webpage to run arbitrary code in the browser. Thus, surfing to a bad website with a vulnerable browser could lead to your device being hijacked. Exploit code for this hole is said to be circulating, and may well be in use already by miscreants.

This high-severity type-confusion bug is present in at least Chrome for desktop versions prior to 112.0.5615.121. Google released that version on April 14 for Windows, Mac, and Linux to close the security hole, which lies in the V8 JavaScript engine.

That new version should be installed as soon as possible, either automatically or manually.

 

3 comments:

Old NFO said...

Got it, thanks!

FeralFerret said...

Downloading and updating right now. Thanks for the info.

BillB said...

Does this apply to the Brave browser which is based on Chrome?