Google fixes fifth Chrome zero-day exploited in attacks this year

Google fixes fifth Chrome zero-day exploited in attacks this year

May 10, 2024 at 04:09AM

Google has released a security update for the Chrome browser to fix the fifth zero-day vulnerability of 2024, which is a high-severity “user after free” issue in the Visuals component. The update addresses potential data leakage, code execution, and crashes. Users are advised to confirm they have the latest version of Chrome.

Based on the meeting notes, Google has released a security update for the Chrome browser to address the fifth zero-day vulnerability discovered this year, tracked as CVE-2024-4671. This vulnerability is a “use-after-free” flaw in the Visuals component, posing a high-security risk by potentially allowing data leakage, code execution, or crashing. An exploit for this vulnerability has been detected in the wild, and Google has issued updates for Mac, Windows, and Linux versions to mitigate the risk. Additionally, it is important for users to ensure they are running the latest version of Chrome by checking for updates in Settings > About Chrome and relaunching to apply them. This latest flaw is part of a series of zero-day vulnerabilities discovered in Google Chrome, with previous vulnerabilities like CVE-2024-0519, CVE-2024-2887, CVE-2024-2886, and CVE-2024-3159 also being addressed in previous updates.

Full Article