Google Chrome for Android Gets a Zero-Day Vulnerability Fix Following Two Patches on Desktop Version

Google Chrome for Android version 86.0.4240.185 has been rolled out with the latest security fix.

Advertisement
By Jagmeet Singh | Updated: 4 November 2020 12:09 IST
Highlights
  • Google Chrome for Android update also includes performance improvements
  • The zero-day issue has been identified as CVE-2020-16010
  • Google Chrome for desktop received a zero-day fix just earlier this week

Google Chrome for Android users are recommended to quickly install the latest update

Google has released a new Chrome for Android update to fix a zero-day flaw that is currently exploited in the wild. The new update arrives just days after Google fixed two zero-day vulnerabilities in the desktop version of its Chrome browser. Details related to the attack are not yet public as a majority of Chrome for Android users are yet to install the update. Alongside the security fixes that include those rolled out initially for desktop users, the latest Chrome update also includes stability and performance improvements.

The latest Chrome for Android update carries version number 86.0.4240.185 that includes fixes for a heap buffer overflow vulnerability, listed as CVE-2020-16010. The issue exists in the user interface (UI) component of the Web browser.

Advertisement

Google is aware of reports that an exploit for CVE-2020-16010 exists in the wild,” the company said in a blog post.

Google's Project Zero team reported the highly severe vulnerability on October 31. Further, the Threat Analysis Group (TAG) at Google, responsible for tracking threat actors, has been credited for discovering the zero-day attacks related to Chrome for Android.

Advertisement

Details of the bug and its exploit are not yet revealed as the update is currently in its rollout process. However, Google said that the new version would become available for download through Google Play over the next few weeks.

Earlier this week, Google rolled out a security update for its Chrome browser on desktops that patched a zero-day vulnerability, tracked as CVE-2020-16009, that existed in JavaScript engine V8.

Advertisement

Prior to the last update, Google patched another zero-day issue affecting its Chrome desktop version last month. That vulnerability, identified as CVE-2020-15999, impacted the FreeType font rendering library of the browser.

It is unclear whether the three zero-day bugs discovered in the last one month are exploited by a single threat actor or multiple groups. Having said that, users on both Android and desktop versions of the Chrome browser are recommended to install the latest updates as soon as they are available.


Is Android One holding back Nokia smartphones in India? We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts, Google Podcasts, or RSS, download the episode, or just hit the play button below.

Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement
Popular Mobile Brands
  1. Realme P4R 5G India Launch Date, Design and Key Specifications Revealed
  2. RTX Spark-Powered Laptops Could Cost a Lot More Than Regular AI PCs
  3. Motorola Edge 70 Pro+ With 6,500mAh Battery Debuts in India at This Price
  4. Lumio Launches 55-Inch Variants of Vision 9 (2026), Vision 7 (2026) in India
  5. Marvel's Wolverine Gets Gameplay Trailer at State of Play, Pre-Orders Go Live
  6. Xiaomi 18, 18 Pro and 18 Pro Max Specifications Leaked Ahead of Debut
  7. Xiaomi 17T Launches in India With Leica-Tuned Triple Rear Cameras
  1. Xiaomi 17T Launched in India With Leica-Tuned Triple Rear Cameras, Dimensity 8500-Ultra SoC: Price, Specifications
  2. Xiaomi 18 Pro Max Leak Reveals Key Specifications Including Dual 200-Megapixel Rear Camera Setup
  3. Onimusha: Way of the Sword Launches September 25, Playable Demo and Pre-Orders Now Live
  4. Motorola Edge 70 Pro+ Launched in India With 6,500mAh Battery, 50-Megapixel Telephoto Camera: Price, Features
  5. Dashlane Password Manager Reveals Hackers Stole Some Encrypted Vaults Using Brute-Force Attacks
  6. Apple Doubles MacBook Neo Output as Budget Laptop Gains Popularity, Analyst Says
  7. Apple Reportedly Agrees to Hand Over India-Specific Financial Data to CCI in Years-Long Antitrust Case
  8. Apple Confirms macOS 27 Will End Support for Intel Macs Ahead of WWDC 2026
  9. Instagram Begins Warning Users Affected by Meta AI Hack That Enabled Account Takeovers
  10. UK's FCA Warns Premier League Clubs Over Unauthorised Crypto Sponsor Risks
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.