Security News > 2020 > September > Google Chrome Bugs Open Browsers to Attack

Google Chrome Bugs Open Browsers to Attack
2020-09-22 18:44

Google has stomped out several serious code-execution flaws in its Chrome browser.

The high-severity flaws include an out-of-bounds read error in storage in Google Chrome.

These include two bugs stemming from extensions in Google Chrome , which could allow an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.

Finally, Google fixed an out-of-bounds write flaw in V8, an open-source JavaScript engine developed by The Chromium Project for Google Chrome and Chromium web browsers.

Last month, Google fixed various severe vulnerabilities in its web browsers, including a bug in Google's Chromium-based browsers that could allow attackers to bypass the Content Security Policy on websites, in order to steal data and execute rogue code.


News URL

https://threatpost.com/google-chrome-attack/159466/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Google 141 996 4899 2857 1622 10374