Chrome for Windows, Mac, Linux Updates With 4 High-Risk Vulnerability Fixes

CERT-In has warned users about the issues and urged them to install the updated Chrome on their systems.

Advertisement
By Jagmeet Singh | Updated: 13 June 2022 19:14 IST
Highlights
  • Chrome users can update by going to 'About Google Chrome' settings
  • Google has included seven security fixes
  • The high-risk issues are related to WebGPU and WebGL components
Chrome for Windows, Mac, Linux Updates With 4 High-Risk Vulnerability Fixes

Chrome users are advised to install the latest update

Photo Credit: Unsplash/ Firmbee.com

Google has released Chrome version 102.0.5005.115 for Windows, Mac, and Linux. The new release fixes a total of seven security vulnerabilities — of which, four are marked highly severe. The update is rolling out to desktop users across Windows, macOS and Linux platforms over the coming days. India's Computer Emergency Response Team (CERT-In) and the United States Cybersecurity and Infrastructure Agency (CISA) have urged users to install the latest Chrome release on their systems to prevent the reported issues.

The four security issues that are rated with high severity are tracked as CVE-2022-2007, CVE-2022-2008, CVE-2022-2010, and CVE-2022-2011, as Google explained in a blog post.

The vulnerability that is tracked as CVE-2022-2007 is a Use-After-Free (UAF) vulnerability, which exists in the WebGPU to API and allows attackers to hack by exploiting incorrect use of dynamic memory. The CVE-2022-2008 flaw, on the other hand, results in out-of-bounds memory access in WebGL.

Chrome's compositing component is also found to have the CVE-2022-2010 issue, which is an out-of-bounds read vulnerability. The last high-risk vulnerability, CVE-2022-2011, is a use after free flaw in ANGLE engine abstraction layer.

Advertisement

Although Google has detailed the four highly severe issues, it has not provided public access to the details as a large number of users are yet to bring the fix.

"We will also retain restrictions if the bug exists in a third-party library that other projects similarly depend on, but haven't yet fixed," the company said.

Advertisement

In response to the public disclosure from Google, CERT-In has released a vulnerability note to urge users to install the latest update.

"Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary code on the targeted system," the advisory by the nodal agency said.

Advertisement

The CISA has also encouraged users and administrators to apply the update on their systems.

Users can check for the latest release on their Windows, Mac, and Linux systems by going to Chrome > About Google Chrome. The update can also be installed by clicking on the three-dot button from the right-most corner and then Help > About Google Chrome.


Missed Apple's WWDC 2022? We discuss every major announcement on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Honor Pad 10 With Snapdragon 7 Gen 3 SoC, 10,100mAh Battery Launched
  2. Xiaomi 15S Pro With With In-House XRING 01 SoC, 6,100mAh Battery Launched
  3. Samsung Galaxy A26 Review
  4. Vijay Sales Apple Days Sale Brings Discounts on These iPhone, Mac Models
  5. Xiaomi Pad 7 Ultra With XRING 01 SoC and 12,000mAh Battery Launched
  6. iQOO Neo 10: From Display, Camera to Battery, Eveything We Know About It
  7. Lava Bold N1, Lava Bold N1 Pro India Pricing, Specifications Teased
  8. Anthropic CEO Believes AI Models Hallucinate Less Than Humans
  9. News Media Alliance Slams Google's AI Mode for Stealing Traffic, Revenue
  1. Trump Threatens 25 Percent Tariffs on Apple If iPhones Not Made in US
  2. iPhone 16 Pro Max, iPhone 15, MacBook Air (M4) and More Get Discounts During Vijay Sales Apple Days Sale
  3. Anthropic CEO Dario Amodei Says AI Models Hallucinate Less Than Humans: Report
  4. UK Government Updates Crypto Reporting Guidelines, Mandates Collection of Crypto Transaction Data
  5. Acer Swift Neo WIth Intel Core Ultra 5, Up to 32GB RAM Launched in India: Price, Specifications
  6. Elden Ring Film Adaptation in the Works at A24 With Alex Garland Set to Direct
  7. Noise Buds F1 TWS Earbuds With IPX5 Rating, Up to 50-Hour Total Playback Time Launched in India
  8. News Media Alliance Issues Statement on Google’s AI Mode, Calls It ‘Definition of Theft’
  9. Honor Pad 10 With Snapdragon 7 Gen 3 SoC, 10,100mAh Battery Launched: Price, Specifications
  10. Lava Bold N1, Lava Bold N1 Pro India Launch Teased; Pricing, Specifications Revealed
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.