【Watch Brooklyn Nine】
While you were out trick or Watch Brooklyn Ninetreating on Halloween night, Google engineers released a warning about a new Chrome security flaw.
On Oct. 31, Google shared informationregarding two recently discovered vulnerabilities. The search giant has confirmed that a zero-day exploit exists for one of these security issues.
A zero-day exploit is basically when a nefarious party discovers a bug they can use for a cyber attack before the original developer can issue a fix.
You May Also Like
Google released a security update to fix the problem that will roll out automatically to all users in the coming days and weeks. Users can manually update Google Chrome immediately by going to the “About Google Chrome” section in the menu bar.
“This version addresses vulnerabilities that an attacker could exploit to take control of an affected system,” said a statementreleased by the U.S. Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA).
Google hasn’t divulged many details about the flaws, which the company says is for security purposes.
“Access to bug details and links may be kept restricted until a majority of users are updated with a fix,” reads the security alert from Google. “We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.”
However, here’s what we know so far. The two vulnerabilities, CVE-2019-13720 and CVE-2019-13721, are considered “use-after-free” flaws. This is when an application attempts to reference previously used memory after it’s been freed or deleted. When this occurs, bad actors can exploit the memory corruption to execute malicious code.
One of the two Chrome bugs affect the PDFium library, which generates PDFs. The other, which has a zero-day exploit in the wild, involves Chrome’s audio component.
The discoverywas made by Anton Ivanov and Alexey Kulaev, two researchers from the cybersecurity firm Kaspersky.
Google Chrome’s last major security vulnerability involving a zero-day exploit occurred just earlier this year. The company pushed out an update in March after a memory management error involving FileReader was discovered.
Topics Cybersecurity Google
Search
Categories
Latest Posts
The best day to book your flight, according to Google
2025-06-26 03:58Today's Hurdle hints and answers for October 24
2025-06-26 03:38Falcons vs. Buccaneers 2024 livestream: How to watch NFL for free
2025-06-26 03:36TikTok expands its educational STEM feed to all users
2025-06-26 03:18This fat bear's before and after photos are stunning
2025-06-26 02:48Popular Posts
The Baffler’s May Day Round Up
2025-06-26 04:42Shop Beats headphones up to 35% off at Amazon and Best Buy
2025-06-26 04:15Best Apple iPad Air 11
2025-06-26 03:58Best Fire Stick Deal: Save $20 on Amazon Fire TV Stick 4K
2025-06-26 02:45The best day to book your flight, according to Google
2025-06-26 02:39Featured Posts
Big-League Bluster
2025-06-26 04:21Election 2024: The truth about voting machine security
2025-06-26 04:20How to watch the 2024
2025-06-26 04:06Best Apple iPad Air 11
2025-06-26 03:58Ireland fines TikTok $600 million for sharing user data with China
2025-06-26 03:41Popular Articles
Best robot vacuum deal: Save $140 on roborock Q7 Max Robot Vacuum
2025-06-26 04:51How to add Snapchat camera to iPhone lock screen
2025-06-26 03:13Election 2024: The truth about voting machine security
2025-06-26 03:10Big-League Bluster
2025-06-26 02:23Newsletter
Subscribe to our newsletter for the latest updates.
Comments (969)
Pursuit Information Network
NYT Strands hints, answers for May 18
2025-06-26 04:51Mystery Information Network
New to streaming, ranked (Oct. 25, 2024)
2025-06-26 04:35Warm Information Network
Cincinnati vs. Colorado football livestreams: kickoff time, streaming deals, and more
2025-06-26 04:17Fashion Information Network
Steelers vs. Giants 2024 livestream: How to watch NFL for free
2025-06-26 04:13Inheritance Information Network
The Baffler’s May Day Round Up
2025-06-26 03:04