Google Chrome Security Update – 31 May 2023

Google has released an updated Chrome version (114.0.5735.90/91) for Windows and (114.0.5735.90) for Linux and Mac to fix multiple vulnerabilities.

Write here analysis sectionThe addressed vulnerabilities could allow the remote attacker to gain access, execute arbitrary code on the system, or bypass security restrictions by persuading the victim to visit a specially crafted webpage.

Sample of the addressed vulnerabilities:

1. Google Chrome V8 Code Execution Vulnerability (CVE-2023-2936):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Access

2. Google Chrome PDF Code Execution Vulnerability (CVE-2023-2931):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Access
Vulnerabilities
  • CVE-2023-2929
  • CVE-2023-2930
  • CVE-2023-2931
  • CVE-2023-2932
  • CVE-2023-2933
  • CVE-2023-2934
  • CVE-2023-2935
  • CVE-2023-2936
  • CVE-2023-2937
  • CVE-2023-2938
  • CVE-2023-2939
  • CVE-2023-2940
  • CVE-2023-2941
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References