Security News > 2023 > September > Chrome, Firefox and more caught with their WebP down, offer hasty patch-up

Chrome, Firefox and more caught with their WebP down, offer hasty patch-up
2023-09-12 15:00

Google has rushed out a fix for a vulnerability in its Chrome browser, noting that an exploit already exists in the wild.

The search giant has followed Apple in hurriedly issuing an update in response to research from The Citizen Lab at The University of Toronto's Munk School.

Google has updated the Stable and Extended channels for Chrome to 116.0.5845.187 for Mac and 116.0.5845.187/.188 for Windows.

As well as being natively supported in other Chromium browsers, such as Edge and Opera, WebP is used in several different tools and image editors.

We asked Microsoft if Edge was also affected and will update should the company respond.

Other than acknowledging that an exploit already existed in the wild, Google was tight-lipped regarding the specifics of the exploit, saying only: "Access to bug details and links may be kept restricted until a majority of users are updated with a fix."


News URL

https://go.theregister.com/feed/www.theregister.com/2023/09/12/chrome_browser_webp_exploit/