Google fixes critical vulnerability CVE-2024-6990 in Chrome

Google fixes critical vulnerability CVE-2024-6990 in Chrome


Google has released the latest security update for its Chrome browser, addressing several critical vulnerabilities.The latest advisory includes three significant security fixes, two classified as high severity and one as critical.

The most critical vulnerability tracked as, CVE-2024-6990, involves an uninitialized use in Dawn, a graphics abstraction layer. This flaw could potentially allow attackers to execute arbitrary code on affected systems.

The other vulnerabilities, CVE-2024-7255 and CVE-2024-7256, involve out-of-bounds reads in WebTransport, and insufficient data validation in Dawn and both could lead to exploitation.

Advertisements

Google has restricted access to detailed information about these bugs until most users have updated their browsers and expressed gratitude to the security researchers who contributed to identifying these vulnerabilities.

The update on the Stable channel brings Chrome to version 127.0.6533.88/89 for Windows and Mac and 127.0.6533.88 for Linux. The update will be distributed over the coming days and weeks.

Comments

No comments yet. Why don’t you start the discussion?

    Leave a Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.