Google warns of a new hacker attack on Chrome: the risk level is high
Google has released an updated version of Chrome and encourages users not to wait for an automatic update, but to install it themselves as soon as possible. The reason is a zero-day vulnerability that is used for real cyber attacks.
Homecve-2022-2294 — a serious security vulnerability reported by a member of the Avast Threat Intelligence Group. It affects the WebRTC (Web Real-time Communications) component, which is a buffer overflow issue. However, Google has not yet disclosed any other details. Such vulnerabilities can be used to cause a program crash, bypass the installed security software, etc. Windows users are recommended to install the latest Google Chrome update — 103.0.5060.114. Chrome for Android is under threat for the same reason. The latest version number of Chrome for Android available on Google Play is 103.0.5060.71. detailsThis is the fourth zero-day vulnerability since the beginning of 2022, which is being fixed in the Chrome browser.
Previous ones had the following IDs: CVE-2022-1364, CVE-2022-1096, and CVE-2022-0609.
In June, DOU wrote that Microsoft had discovered a Windows vulnerability that hackers were actively exploiting. Users who have Windows 7 and later installed are advised to install the update.