Google Chrome Update Fixes High-Severity Zero-Day Vulnerability That Was Actively Exploited

The latest updates for Google Chrome fix a flaw that allows an attacker to use a malicious file to run dangerous code on a user's computer.

Advertisement
Written by David Delima, Edited by Siddharth Suvarna | Updated: 1 December 2023 15:22 IST
Highlights
  • Google has updated its Chrome browser with important security patches
  • The updates are available for Windows, macOS and Linux
  • Google says it is aware of the Chrome flaw being actively exploited

Google Chrome users with automatic updates enabled should already be protected

Photo Credit: Gadgets 360

Google is rolling out a security patch for its Chrome web browser that fixes a security flaw that could allow a malicious user to run dangerous code on a user's computer. The update is available for Windows, macOS, and Linux computers and users should install the latest version in order to remain protected from the zero-day vulnerability — the sixth one to be patched by Google this year. The company is expected to provide more information once the update has been rolled out to several users.

Spotted by Android Central, the update to Google Chrome 119.0.6045.199 for macOS and Linux began rolling out to users earlier this week, alongside version 119.0.6045.200 for Windows computers with a fix for a zero-day vulnerability in tow. These are flaws that were previously unknown to the developers of the software, making them a target for malicious users.

With the latest Google Chrome update, the company has patched the security bug tracked by the National Institute of Standards and Technology (NIST) as CVE-2023-6345. While the company hasn't revealed a great deal of information related to the security flaw, the firm says it knows that "an exploit for CVE-2023-6345 exists in the wild" in its release notes for the latest update. Users should enable automatic updates for Chrome or manually update to the latest versions in order to get the latest fixes.

Advertisement

Meanwhile, the entry for the vulnerability on the NIST website has been assigned a "High" severity level. The description states that it is related to the open source Skia library that is used in Google Chrome. An attacker could use a malicious file to compromise the renderer process and escape the sandbox — a system designed to separate the browser and the system, to keep the latter protected.

Advertisement

The company credits Benoît Sevens and Clément Lecigne from its Threat Analysis Group (TAG) with discovering the vulnerability that was found on November 24 and swiftly patched by the company. At the moment, it is unclear whether other browsers and applications that are also based on Google's open-source Chromium browser project are also affected by the flaw, or when they will receive updates with security patches.


Is the Samsung Galaxy Z Flip 5 the best foldable phone you can buy in India right now? We discuss the company's new clamshell-style foldable handset on the latest episode of Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Apple Launches iPhone 17 at 'Awe Dropping' Event With These Upgrades
  2. Apple Launches iPhone 17 Pro, 17 Pro Max With These Massive Upgrades
  3. Apple Watch Series 11, Ultra 3, SE Launched With These Health Features
  4. Apple Launches iPhone Air as the Slimmest iPhone to Date
  5. Tecno Spark Slim Listed Online; Colour Options, Specifications Revealed
  6. iPhone 17 Launch Highlights: iPhone 17 Series, AirPods 3, and More Launched
  7. iQOO 15, iQOO Neo 11 Series Details Tipped; Might Feature 7,000mAh Battery
  8. Apple MacBook Air M4 Available With Up to Rs. 16,000 Discount via Amazon
  9. Flipkart Big Billion Days Sale: Google Pixel 9 to Get This Huge Price Cut
  1. iPhone 17 Pro, iPhone 17 Pro Max Are Here: Massive Camera Upgrades, and A19 Pro Chip
  2. iPhone Air Launched: Ultra-Slim Form Factor, Apple Intelligence Features, and More
  3. iPhone 17 Launched: A19 Chip, Apple Intelligence, and More
  4. Apple Watch Series 11, Ultra 3, and SE Launched: Thinner Design and New Health Sensors
  5. AirPods Pro 3 Launched: Featuring Lossless Audio and a Redesigned Case
  6. Tecno Spark Slim Full Specifications Revealed; Features MediaTek Helio G200 SoC, 5.93mm Thick Build
  7. Samsung Galaxy S26 Ultra Tipped to Feature Thicker Rear Camera Module Comprising 50-Megapixel Telephoto Camera
  8. Hollow Knight: Silksong Has Reportedly Crossed 5 Million Players in 3 Days
  9. Apple Powerbeats Fit Colour Options, Key Features Leaked; May Offer Up to 30 Hours Total Battery Life
  10. Global Premium Smartphone Sales Hit Record High in H1 2025 as Google Re-Enters Top Five: Counterpoint
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.