Google Chrome Zero Day Vulnerability

  • NOVEMBER 18TH, 2024
  • 1min read
Google Chrome Zero Day Vulnerability

Introduction

We’d like to bring to your attention a high-severity vulnerability in Google Chrome browsers and Chromium-based browsers with active ongoing exploits. CVE-2024-7971 stems from an issue in Chrome’s V8 JavaScript engine.

This vulnerability allows a remote attacker to execute code via a crafted HTML page, which can lead to browser crashes after data allocated into memory is interpreted as a different type. This can be exploited to execute arbitrary code, enabling an attacker to execute commands that affect the host system without restriction, like installing malware, creating backdoors, and gaining unauthorised access to sensitive data.

Steps to Take

  • Update Google Chrome: Google has released new versions for Windows, macOS, and Linux. To update:
    1. Click the three ellipses (â‹®) in the top right corner.
    2. Scroll down and click ‘Help’.
    3. Click ‘About Google Chrome’ and update to the latest version.
    4. Click ‘Relaunch’ to apply the update.
  • Update Chromium-Based Browsers: Microsoft Edge, Opera, and Brave should be updated as soon as patches become available.

Never miss a CIL Security Advisory

Stay informed with the latest security updates and insights from CIL.

Google Chrome Zero Day Vulnerability

Contact Us

Message Sent!

Thank you for reaching out. We have received your message and will get back to you shortly.

Check your email for a confirmation from us.

Start a project

Project Request Submitted!

Thank you for your interest. Our team will review your project details and reach out to you soon.

Check your email for a confirmation from us.