Google releases an urgent Chrome security update addressing a zero day
Google has rolled out an emergency security update for the Chrome browser, aimed at fixing a zero day vulnerability that attackers are already exploiting. The patch is now available for Windows, macOS, and Linux, ensuring broader protection for users across desktop platforms.
Google notes that the detected vulnerability is actively being used in real world attacks. As a result, the company urges every Chrome user to install the latest version as soon as possible to reduce the risk of compromise. The company highlights the importance of updating to close this entry point that could allow an attacker to gain control of a device, access data, or install additional malicious software.
The latest Chrome release includes seven security fixes, with the standout being CVE-2023-6345. This issue involves an integer overflow in the Skia 2D graphics library, which is used not only by Chrome but also by other Google services such as Chrome OS, Android, and Flutter. A successful exploit could enable arbitrary code execution when a user opens a page in Chrome, potentially giving a malicious actor full control over the system.
To update Chrome to the newest version, users should open the browser, navigate to the menu under Help and About Google Chrome, allow the update to download, and then click Restart. If the browser updates automatically, a restart may not be required.
Like many tech platforms, awareness about phishing and fake alerts remains important. In related news, there have been warnings around deceptive Android Telegram impersonations that can affect users who install unofficial apps or click unsafe links.
Staying protected means keeping apps up to date, enabling automatic updates where possible, and practicing cautious browsing habits. Regularly reviewing device security settings and using additional protections such as browser sandboxing and reliable security software can further reduce risk. In the event of a suspected security issue, users should verify the update status through the official Chrome settings and avoid clicking on unexpected prompts or links.