Google Chrome Security Update – 10 January 2024

Google has released an updated Chrome version 120.0.6099.216/217 for Windows and 120.0.6099.216 for Mac and Linux.

The addressed vulnerability could allow the remote attacker to bypass security restrictions caused by insufficient data validation in Extensions of the affected system by persuading the victim to visit a specially crafted website.

Google Chrome Security Bypass Vulnerability (CVE-2024-0333):

  • CVSS: 6.5
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Bypass Security
Vulnerabilities

CVE-2024-0333

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References