Google has released Chrome 149 to fix 18 security vulnerabilities, including four critical and 14 high-severity flaws, with most of the issues tied to use-after-free bugs that could potentially enable remote code execution. The update is now rolling out for Windows, macOS, and Linux, and Google has not reported any active exploitation in the wild. #Chrome149 #Google #useafterfree
Keypoints
- Chrome 149 fixes 18 vulnerabilities, including four critical and 14 high-severity issues.
- Most of the patched flaws are use-after-free bugs that may lead to remote code execution.
- Some browser memory bugs could help attackers escape the sandbox when combined with other weaknesses.
- The remaining fixes address out-of-bounds read, inappropriate implementation, uninitialized use, and input validation issues.
- Google says none of the newly patched vulnerabilities are known to be exploited in the wild.
Read More: https://www.securityweek.com/chrome-149-update-resolves-18-severe-vulnerabilities/