Google Chrome Patches 7 Vulnerabilities, one of which is an Exploited-in-the-Wild, Critical Arbitrary Code Execution Zero-Day
Google has released a new Chrome update, patching 1 actively exploited arbitrary code execution zero-day vulnerability and 6 additional ones.
The updated Chrome version is 91.0.4472.164 and is relevant to Windows, Mac, and Linux.
6 out of the patched vulnerabilities are classified by Google as of high severity.
The actively exploited Arbitrary Code Execution Zero-Day Vulnerability
- CVE-2021-30563 (High Severity) – Arbitrary Code Execution due to Type Confusion in V8
Affected Versions
- Google Chrome for Desktop prior version 91.0.4472.164
Mitigation
CYREBRO recommends updating Chrome for desktop to the newest version available (91.0.4472.164 at minimum)
References: Google Chrome Releases