Google Chrome Multiple Vulnerabilities
RISK: Extremely High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities were identified in Google Chrome, a remote attacker could exploit some of these vulnerabilities to trigger remote code execution, denial of service condition and security restriction bypass on the targeted system.
HKCERT is aware of these vulnerabilities have been reported publicly that they are being exploited in the wild, and encourages users and administrators to review the security update pages for the affected products and apply the related updates as soon as possible.
Note:
CVE-2021-30632 and CVE-2021-30633 are being exploited in the wild.
Impact
- Remote Code Execution
- Denial of Service
- Security Restriction Bypass
System / Technologies affected
- Google Chrome prior to 93.0.4577.82
Solutions
Before installation of the software, please visit the software vendor web-site for more details.
Apply fixes issued by the vendor:
- Update to version 93.0.4577.82
Vulnerability Identifier
- CVE-2021-30625
- CVE-2021-30626
- CVE-2021-30627
- CVE-2021-30628
- CVE-2021-30629
- CVE-2021-30630
- CVE-2021-30631
- CVE-2021-30632
- CVE-2021-30633
Source
Related Link
https://chromereleases.googleblog.com/2021/09/stable-channel-update-for-desktop.html
Related Tags
Share with