Google Chrome Security Update – 30 August 2023

Google has released an updated Chrome version (116.0.5845.140) for Linux/Mac and (116.0.5845.140/.141) for Windows to fix a vulnerability.

The addressed vulnerability is caused by a use-after-free in MediaStream which could allow the remote attacker to execute arbitrary code, and gain access to the affected system by persuading the victim to visit a specially crafted website.

Google Chrome Code Execution Vulnerability (CVE-2023-4572):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Access
Vulnerabilities

CVE-2023-4572

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References