Google has updated Chrome to version 116.0.5845.140/.141 through its stable and extended stable channels for Mac, Linux, and Windows. The main goal of this update is to solve a security issue in Chrome. Notably, this upgrade includes a "high severity" security patch, and its rollout will take place gradually over the next few days and weeks. This update has successfully fixed a significant vulnerability identified as CVE-2023-4572 and rated as "high severity. The specific flaw, referred to as "Use after free in MediaStream," has been fixed, and credit for finding this problem goes to fwnfwn (@_fwnfwn). When dynamic memory is managed incorrectly while a program is running, there is a flaw known as "Use After Free" (UAF) that can be exploited by adversaries. Basically, attackers may be able to influence the program using this mistake if the program doesn't remove the pointer to a memory address after freeing it. Google has announced a change in strategy regarding security updates for the stable channel. The business will now start sending out weekly security updates, and the modification intends to close the gap in the Chrome release cycle and speed up the quick fix of vulnerabilities and significant issues. Updates addressing security-related and other high-impact vulnerabilities will now be scheduled weekly instead of every four weeks, which will speed up the execution of security patches. Following the patching of a security flaw in Chrome, the procedure involves making the corrected source code for Chrome available to everyone. The patch gets put out on the stable channel after being carefully tested and assessed.
Cybersecurity researchers have identified a new variant of the GlassWorm campaign that targets developers through a malicious Open VSX extension named “specstudio.code-wakatime-a...
A recently disclosed flaw in the widely used Android library EngageSDK has created significant concern within the cryptocurrency space, as it may have exposed millions of users to ...
A suspected hack-for-hire cyber espionage campaign, potentially linked to the threat group Bitter, has targeted journalists, activists, and government critics across the Middle Eas...