Google Chrome Browser (130.0.6723.58/.59) Security Update Advisory
Overview
Google has released an update to address a vulnerability in the Chrome(https://www.google.com/chrome) browser. Users of affected versions are advised to update to the latest version.
Affected Products
Chrome version prior to 130.0.6723.58 (Linux)
Chrome version prior to 130.0.6723.58/.59 (Windows)
Resolved Vulnerabilities
A high-level memory free and reuse (UAF) vulnerability in the Ai function (CVE-2024-9954)
Moderate memory free and reuse (UAF) vulnerability in the Dawn function (CVE-2024-9960)
Moderate memory free and reuse (UAF) vulnerability in the Devtools function (CVE-2024-9959)
Low-level Data Validation Insufficiency Vulnerability in the Devtools function (CVE-2024-9965)
Moderate Data Validation Lack in Downloads feature (CVE-2024-9963)
A low-level security unvalidated vulnerability in the Navigations feature (CVE-2024-9966)
Moderate memory free and reuse (UAF) vulnerability in the Parcel tracking feature (CVE-2024-9961)
Low-level security unvalidated vulnerability in the Payments feature (CVE-2024-9964)
Moderate security untested vulnerability in the Permissions function (CVE-2024-9962)
Moderate security unvalidated vulnerability in the Pictureinpicture function (CVE-2024-9958)
Moderate memory free and reuse (UAF) vulnerability in the Ui functionality (CVE-2024-9957)
Moderate memory free and reuse (UAF) vulnerability in the Web authentication functionality (CVE-2024-9955)
A moderate security unvalidated vulnerability in the Web authentication feature (CVE-2024-9956)
Vulnerability Patches
The following Vulnerability Patches were made available in the October 15, 2024 update. For more information on Vulnerability Patches, Please refer to the “Google Chrome” Referenced Sites document.
Chrome 130.0.6723.58/.59 or later version (Windows)
Chrome 130.0.6723.58 or later version (Linux)
Referenced Sites
[1] Stable Channel Update for Desktop
https://chromereleases.googleblog.com/2024/10/stable-channel-update-for-desktop_15.html
[2] Chrome Update
https://support.google.com/chrome/answer/95414?co=GENIE.Platform%3DDesktop