Google Chrome Browser (125.0.6422.76/.77) Security Update Advisory

Overview

 

Google has released an update to address a vulnerability in the Chrome(https://www.google.com/chrome) browser. users of affected versions are advised to update to the latest version.

 

Affected Products

 

Chrome prior to version 125.0.6422.76 (Linux)

Chrome prior to version 125.0.6422.76/.77 (Windows)

 

Resolved Vulnerabilities

 

High-level heap buffer overflow vulnerability in the Angle function (CVE-2024-5159) [1]

High-level heap buffer overflow vulnerability in the Dawn function (CVE-2024-5160) [1]

High-level Memory Free and Reuse (UAF) Vulnerability in the Scheduling Function (CVE-2024-5157) [1]

High-level Type Confusion Vulnerability in V8 Functionality (CVE-2024-5158) [1

 

Vulnerability Patches

 

The following Vulnerability Patches were made available in the 05/21/2024 update. For more information on Vulnerability Patches, please refer to the “Google Chrome” Referenced Sites document.

Chrome 125.0.6422.76/.77 and later (Windows)

Chrome 125.0.6422.76 and later (Linux)

 

Referenced Sites

 

[1] Stable Channel Update for Desktop

https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_21.html

[2] Chrome Update

https://support.google.com/chrome/answer/95414?co=GENIE.Platform%3DDesktop