Google Chrome Security Update 23 February 2023

Google has released an updated Chrome version (110.0.5481.177/.178) for Windows and (110.0.5481.177) for Linux and Mac to fix multiple vulnerabilities.

The addressed vulnerabilities could allow the remote attacker to execute arbitrary code on the system, cause a denial of service or trigger a buffer overflow by persuading the victim to visit a specially crafted webpage on the affected system.

Sample of the addressed vulnerabilities:

1. Google Chrome Prompts Execution (CVE-2023-0941):

• CVSS: 8.8

• Attack Vector: Network

• Attack Complexity: Low

• Privileges Required: None

• User Interaction: Required

• Consequences: Gain Access

2. Google Chrome Web Payment APIs Execution (CVE-2023-0927):

• CVSS: 8.8

• Attack Vector: Network

• Attack Complexity: Low

• Privileges Required: None

• User Interaction: Required

• Consequences: Gain Access

Vulnerabilities
  • CVE-2023-0941
  • CVE-2023-0927
  • CVE-2023-0928
  • CVE-2023-0929
  • CVE-2023-0930
  • CVE-2023-0931
  • CVE-2023-0932
  • CVE-2023-0933
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References