Chrome Vulnerabilities Found
Multiple vulnerabilities have been discovered in the Google Chrome web browser, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow an attacker to execute arbitrary code in the context of the browser.
Depending on the privileges associated with the application, an attacker could view, change, or delete data.
RISK:
Government:
- Large and medium government entities: High
- Small government entities: High
Businesses:
- Large and medium business entities: High
- Small business entities: High
RECOMMENDATIONS:
We recommend the following actions be taken:
- Apply the stable channel update provided by Google to vulnerable systems immediately after appropriate testing.
- Run all software as a non-privileged user to reduce the effects of a successful attack.
- Remind users not to visit un-trusted websites or follow unknown or un-trusted links.
- Inform and educate users regarding the threats posed by links contained in emails or attachments.
- Apply the Principle of Least Privilege to all systems and services.
Details from www.cisa.gov/tlp
Further Links
https://chromereleases.googleblog.com/2022/03/stable-channel-update-for-desktop_29.html
Book A Chat
If you want to discuss your cyber security more or ask us any questions please do book a free no obligation chat with us.