Google Chrome Security Update 25 January 2023

Google has released an updated Chrome version (109.0.5414.119/.120) for Windows, and (109.0.5414.119) for Linux and Mac to fix multiple vulnerabilities.

The addressed vulnerabilities could allow the remote attacker to execute arbitrary code or cause a denial of service on the vulnerable system, by persuading the victim to visit a specially crafted webpage.

Sample of the addressed vulnerabilities:

Google Chrome Code Execution Vulnerability (CVE-2023-0471):

• CVSS: 8.8

• Attack Vector: Network

• Attack Complexity: Low

• Privileges Required: None

• User Interaction: Required

• Consequences: Gain Access

Vulnerabilities
  • CVE-2023-0471
  • CVE-2023-0472
  • CVE-2023-0473
  • CVE-2023-0474
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References