Google Chrome Security Update – 12 September 2023

Google has released an updated Chrome version (116.0.5845.187/188) for Windows, and (116.0.5845.187) for Linux, and Mac to fix a zero-day vulnerability.

The addressed vulnerability could allow the remote attacker to overflow the buffer and execute arbitrary code by persuading the victim to visit a specially crafted
website.

Google Chrome Buffer Overflow Vulnerability (CVE-2023-4863):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Access

It should be highlighted that Google is aware of a public exploit that exists in the wild for the mentioned zero-day vulnerability.

Vulnerabilities

CVE-2023-4863

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References