Google patches another actively exploited Chrome vulnerability, three days after previous
Take action: Update your Chrome and Chromium browsers (Opera, Brave, Edge) as soon as possible. Yes, it's beyond tedious to have to patch twice a week. Yet hackers are betting on our collective fatigue. Don't delay, the update is trivial and all your tabs are reopened automatically.
Learn More
Google has patched another actively exploited high-severity vulnerability in Chrome, tracked as CVE-2024-4761 (CVSS score 8.8).
This vulnerability, an out-of-bounds write error in the V8 JavaScript engine, affects versions of Google Chrome prior to 124.0.6367.207. The flaw enables a remote attacker to execute out-of-bounds memory writes through a specifically crafted HTML page, posing potential risks such as data theft, malware distribution, or other malicious activities.
Google reports that there is known exploit code for CVE-2024-4761 in the wild. Google has released emergency updates for Mac and Windows platforms and plans to extend these updates to Linux systems in the near future.
Obviously, the patch should also be applied to all Chromium based browsers (Edge, Opera, Brave).
This patch comes only 3 days after the previous patch of actively exploited flaw, causing a lot of patch fatigue.