Google's Emergency Chrome Update Addresses Actively Exploited Zero-Day Bug.

TL;DR Summary
Google has released a security update for its Chrome web browser to fix the second zero-day vulnerability found to be exploited in attacks this year. The vulnerability, CVE-2023-2136, is a high-severity integer overflow vulnerability in Skia, a Google-owned open-source multi-platform 2D graphics library written in C++. Google has not disclosed many details about how CVE-2023-2136 was used in attacks, leaving open to speculation the exploitation method and related risks. It is recommended that all Chrome users apply the available update as soon as possible.
- Google patches another actively exploited Chrome zero-day BleepingComputer
- Google Issues New Warning For 3 Billion Chrome Users Forbes
- Google releases another emergency security update for Chrome Ghacks
- Google pushes emergency Chrome for Mac update to fix actively exploited flaw Macworld
- Google Issues Emergency Chrome Update for Zero-Day Bug DARKReading
Reading Insights
Total Reads
0
Unique Readers
10
Time Saved
2 min
vs 3 min read
Condensed
80%
425 → 84 words
Want the full story? Read the original article
Read on BleepingComputer