Don’t fall prey to this worrying Google Chrome exploit – update your browser now

chrome logo pointed at on laptop
(Image credit: Shutterstock ? Wachiwit)

Google Chrome has a vulnerability of the most dangerous kind, so you’ll want to check that your browser is updated to the latest version which carries the fix.

The worst kind of vulnerability is one that’s known about, and Google has confirmed that this particular hole in Chrome has already been exploited. So not only is it known to malicious actors, but it’s also being actively leveraged against Chrome users, which is obviously bad news.

The problem in this case, as outlined by Google, is a heap buffer overflow in WebRTC. (As the name suggests, this is an issue where an attacker causes an area of memory to be written to so it overflows, opening up the avenue for exploitation).

This is known as vulnerability CVE-2023-7024, and Google acknowledges that an exploit for it exists out there.

Heap and stack overflows are some of the more common attack vectors around, and indeed this is far from the first heap overflow gremlin that has troubled Google’s web browser.

How to fix this security flaw

Fortunately, there’s no need to panic – all you have to do to protect yourself from this attack is open Chrome’s Settings page (from the three-dot menu, top-right of the browser). From there, look at the left-side panel, and click on ‘About Chrome’ at the bottom of the list.

Just opening this will automatically check for updates and apply an upgrade if it’s needed. To have protection against this exploit, on a Windows PC you should be on Chrome version 120.0.6099.130 (or alternatively 120.0.6099.129 – and that’s the version you’ll want to be running on Mac or Linux).

When we checked, we were still running version 120.0.6099.110, and our Chrome browser hadn’t updated itself yet. So, it’s well worth checking now, and getting this sorted before there’s any chance of your PC being compromised.

Don’t forget that after Chrome has updated itself, you’ll need to close the browser (all instances of it), and reopen it to apply the upgrade – then everything’s sorted and you’re good to go.

Via Ghacks

You might also like

TOPICS

Darren is a freelancer writing news and features for TechRadar (and occasionally T3) across a broad range of computing topics including CPUs, GPUs, various other hardware, VPNs, antivirus and more. He has written about tech for the best part of three decades, and writes books in his spare time (his debut novel - 'I Know What You Did Last Supper' - was published by Hachette UK in 2013).

Read more
A finger touching the google chrome icon in the Windows 10 start menu
A new Chrome browser highjacking attack could affect billions of users - here's how to fight it
chrome firefox extensions
Google Chrome extensions hit in major attack - dozens of developers affected, so be on your guard
Apple Siri
Update your Apple device now: iOS 18.3.2 fixes a flaw that could be exploited by hackers
the YouTube logo on a screen in front of other YouTube logos covering a black background
Worrying YouTube security flaw exposed billions of user emails
Chrome icon on Android
Google Chrome extensions hack may have started much earlier than expected
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Google Chrome extensions targeted by hackers to steal user passwords
Latest in Chrome
Google Chrome browser icon
A new split-screen feature is coming to Google Chrome, and it's surprisingly powerful
A finger touching the google chrome icon in the Windows 10 start menu
A new Chrome browser highjacking attack could affect billions of users - here's how to fight it
Close-up of Asus Chromebook CM14 ports on left side
Are you an educator or student? Google's new features for Chromebooks and more will make your life way easier
Chrome icon on Android
Google plans on a handy fix for all those duplicate Chrome tabs, but it's only for Android
A trophy with the Chrome logo on it and a star with "2024" written in it
These are the best Chrome Extensions of 2024 – according to Google
Close up of Chromebook
Chrome slowing down your laptop? Google’s new performance controls could help the browser run faster
Latest in News
Star Wars Knights of the Old Republic
Knights of the Old Republic remake developer Saber Interactive states all its projects are 'still in development'
Circular smart ring
Circular's new smart ring is getting blood pressure and blood glucose monitoring before the Apple Watch
Gemini on a mobile phone.
Worryingly, Google Gemini’s new AI image generation features can be used to remove watermarks from images and I'm concerned
iPad mini 2021
Huawei might have beaten Apple to the folding phone finish line by creating a foldable 'iPad mini'
Google Pixel 9 in green Wintergreen color showing AI features on screen
Multiple hands-on Google Pixel 9a videos have emerged, days ahead of the likely launch
A man getting angry with his laptop.
Windows 11 bug deletes Copilot from the OS – is this the first glitch ever some users will be happy to encounter?