Another Google Chrome 0-day vulnerability fixed: update asap
Google released a security update for its Chrome web browser to address another 0-day security vulnerability. This is the second 0-day vulnerability that Google fixed in Chrome in recent time and the third security update since the release of Chrome 123 on March 20, 2024.
Chrome users may want to update the browser immediately to protect it against potential attacks.
Load chrome://settings/help on the desktop to find out if Chrome is up to date. Chrome is up to date if you see one of the following versions: 123.0.6312.105, 123.0.6312.106, or 123.0.6312.107.
The browser should pick up the newest security update if an older version is installed. Note that this works only on desktop systems. Chrome for Android updates are managed by Google Play.
0-day JavaScript vulnerability

The vulnerability was shown to the public during the Pwn2Own hacking contest in March 2024 for the first time. Demoed by security researchers Edouard Bochin and Tao Yan, the researchers managed to exploit Chrome and also Microsoft Edge during the competition using the exploit.
This earned them $42500 in price money during the competition. According to the official announcement, the exploit used an out of bounds read "plus a novel technique" to defeat V8 hardening and execute arbitrary code in the renderer.
Other Chromium-based web browsers are also affected by the issue, as it affects a shared component. Some of the browsers may have been updated already as a reaction to the reported security issue.
Closing Words
The Pwn2Own competition is notorious for finding and exploiting vulnerabilities in all kinds of products. Browsers have been a high priority target ever since the hacking competition opened its doors.
Browsers are a lucrative target as successful exploits open up lots of opportunities. This ranges from data extractions and manipulations of content in browsers to cookie or password stealing.
Mozilla and Microsoft addressed 0-day vulnerabilities in Firefox and Edge as well, as the browsers were also exploited during the competition.
Google announced a new project this week in an attempt to prevent cookie stealing. The company hopes that this project will become a new web standard. At its core, it is binding cookies to the system they were created on.
Do you keep your browsers up to date?
RECOMMENDED NEWS
Microsoft is reportedly auto-installing the HP Smart app on Windows 10 and 11 PCs
Windows 10 and 11 ship with several apps that you may not want. One more app has reportedly joined ...
Windows 11 is promoting Xbox PC Game Pass with a pop-up ad
Microsoft is displaying yet another ad on Windows 11. This time, a pop-up banner promotes the compa...
Wine 10.0 launches with enhanced compatibility for Windows apps on Linux
The Wine team has announced the release of Wine 10.0, with several important improvements to enable...
Firefox 135 launches with new translation languages, New Tab layout, security, and privacy improvements
Mozilla will release Firefox 135 to the stable channel today. The release is a big feature and secu...
Dragon Copilot: Microsoft's AI Solution Aims to Alleviate Clinician Burnout
Microsoft has unveiled Dragon Copilot, an AI-powered assistant designed to streamline healthcare ad...
Diablo 4 roadmap confirms keyboard and mouse support for consoles
Diablo 4 players on Xbox and PlayStation have long expressed frustration over the cumbersome invent...
Comments on "Another Google Chrome 0-day vulnerability fixed: update asap" :