Google Chrome Security Update – 06 June 2023

Google has released an updated Chrome version (114.0.5735.110) for Windows and (114.0.5735.106) for Linux and Mac to fix a zero-day vulnerability.

The addressed vulnerability could allow the remote attacker to gain access, and execute arbitrary code on the system in the context of the logged-on victim by persuading the victim to visit a specially crafted website.

The addressed vulnerability:

Google Chrome Type Confusion in V8 (CVE-2023-3079):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Access

It should be highlighted that Google is aware of a public exploit exists in the wild for this zero-day vulnerability.

Vulnerabilities

CVE-2023-3079

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References