Snynet Solution Logo
MON - SUN: 10 AM - 6 PM
+60 11 5624 8319

Blog

Update Google Chrome now to fix these two serious security bugs

Image Description

Google has once again pushed out an update for its Chrome web browser that patches a couple of zero-day vulnerabilities that have publicly available exploits.

The two zero-days, tracked as CVE-2021-37975, and CVE-2021-37976 are in fact part of a total of four security issues addressed in Chrome 94.0.4606.71, three of which were discovered by external security researchers.

“Google is aware the exploits for CVE-2021-37975 and CVE-2021-37976 exist in the wild,” note the Chrome developer team. 

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window

The search giant added that Chrome 94.0.4606.71 has begun rolling out to users tuned into the browser’s Stable Desktop channel. 

Not naught

Reporting on the release, BleepingComputer notes that the two fixes in this release bring the total number of zero-days fixed in Chrome this year alone, up to thirteen.

In the announcement, Google shared that CVE-2021-37975 is a high-severity use after free bug in Chrome’s V8 JavaScript engine, and that CVE-2021-37976 causes an information leak in core and is treated as a medium severity bug.

While Google has acknowledged the availability of exploits for these two vulnerabilities, it hasn’t shared any details on the exact exploitation mechanism. 

However, BleepingComputer opines that use after free vulnerabilities are usually used to escape the browser’s security sandbox, and even perform remote code execution attacks.

In any case, all Chrome users are advised to install the updated release as and when it becomes available.

Via BleepingComputer

Date

01 Oct 2021

Sources


Share


Other Blog

  • Facebook to tweak its 'News Feed' algorithm - Here's how it'll work

    Facebook is planning a series of News Feed ranking tests, which have the potential to change what people see in their Facebook feeds, and this will also have an effect on how Pages optimize their approaches for better impact.

    Read More
  • Nvidia will let you rent its mini supercomputers

    The DGX Station A100 is now available under a monthly rental scheme.

    Read More
  • API monitoring: taking visibility to the next level

    Ian Waters at ThousandEyes discusses the importance of API monitoring for modern application owners.

    Read More
  • Windows 11 leaks – and you’ll probably love or hate it

    Windows 11 has seemingly been confirmed, and we’ve caught a glimpse of what it looks like.

    Read More

Find Out More About Us

Want to hire best people for your project? Look no further you came to the right place!

Contact Us