Google

Adhoc update: Chrome Vulnerability is Being Actively Exploited

Further information is now available on the update for the Chrome browser published by Google a few days ago. These show that an emergency update is highly recommended as a vulnerability is being exploited extensively. Google recently released Chrome version 105.0.5195.102 out of order. This closes a single critical security hole on Windows, Mac, and Linux systems.

This is already the sixth zero-day vulnerability this year, i.e. a problem that malware developers have long since been actively abusing when it became known. The vulnerability arose because insufficient data validation was performed in the Mojo libraries.

This allowed information to be injected into the processing processes, which attackers could use to their advantage. A further aggravating factor here was that the data could also be foisted on other processes beyond the limits of the respective memory area.

Details Coming later

However, Google has not yet published any further details on the problem. It’s actually quite common that after a patch has been released, sample code for an exploit is also provided so that other developers can learn from the bug. However, Google wants to wait until enough users have downloaded and installed the Chrome update. But even then it could be that detailed information is withheld.

Because the actual mistake was not made by Google. The affected libraries come from the open source camp and are also used in other software products so there is also a risk of misuse. Incidentally, Google claims to have found out about the security gap from an external security researcher who wanted to remain anonymous.

Recent Posts

Multikernel Linux: Multiple Linux systems without a VM on one device

Multikernel Technologies has a public version of its multikernel Linux for the first time with…

2 days ago

Memory crisis makes you creative: New MSI laptop with DDR4 or DDR5

The world's PC manufacturers are in a bind when it comes to memory. DDR4 RAM…

2 days ago

Gamescom 2026: Series of thefts hit small indie developers hard

How safe are the protected halls of Gamescom 2026 really? After the night-time theft of…

2 days ago

GrapheneOS: No secure Android for the Pixel 11 because Google is sloppy?

Google has apparently made changes to the security features of the Pixel 11 series, which…

2 days ago

The Smart Girl’s Guide to Staying Safe Online While Shopping

Bagging a bargain online has never been easier - or riskier. Between dodgy "influencer" deals…

2 days ago

Google against website operators: AI overview in search even larger

Google is expanding its AI overviews and is now displaying even more information and details…

2 days ago