Want relief keeping up with product patching, upgrades, and more? Learn how our Managed Services for law firms can help you.
Google Chrome (Desktop) Multiple Security Vulnerabilities
March 2024
Google Chrome (Desktop) users: Please see the list of vulnerability and fixes identified below.
Identified Vulnerabilities
The following are identified vulnerabilities with the desktop version of Google Chrome prior to version 123.0.6312.86
Use After Free in ANGLE (CVE-2024-2883)
A vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use After Free in Dawn (CVE-2024-2885)
A vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use After Free in WebCodes (CVE-2024-2886)
A vulnerability that allows a remote attacker to perform arbitrary read/write via a crafted HTML page.
Type Confusion in WebAssembly (CVE-2024-2887)
A vulnerability that allows a remote attacker to execute arbitrary code via a crafted HTML page.
Patch and Upgrade Available
Google Chrome has released the latest/stable version available for download in their Releases Blog.
Sources
- https://chromereleases.googleblog.com/2024/03/stable-channel-update-for-desktop_26.html
- https://www.bleepingcomputer.com/news/security/google-fixes-chrome-zero-days-exploited-at-pwn2own-2024/
Contact Cornerstone.IT for assistance with this or any other technology or security needs.