Google Fixes Two Actively Exploited Chrome Zero-Day Flaws
#1
Information 
Quote:Google has released an out-of-band Chrome update to fix two high-severity zero-day vulnerabilities being actively exploited in the wild. The update is available now for Windows, macOS, and Linux.

"Google is aware that exploits for both CVE-2026-3909 & CVE-2026-3910 exist in the wild," Google said in a security advisory published on Thursday.

Target versions: Windows (146.0.7680.75), macOS (146.0.7680.76), and Linux (146.0.7680.75).

The Two Zero-Day Vulnerabilities

CVE-2026-3909 is an out-of-bounds write vulnerability in Skia, the open-source 2D graphics library Chrome uses to render web content and user interface elements. Out-of-bounds write flaws in rendering components can allow attackers to crash the browser or achieve code execution.

CVE-2026-3910 is an inappropriate implementation vulnerability in V8, Chrome's JavaScript and WebAssembly engine. Google has not published technical details for either flaw while the update is still rolling out to users.

Google discovered both vulnerabilities internally and issued patches within two days of reporting.

Continue Reading...
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Microsoft Edge 149.0.4022.80
Release Summary ...harlan4096 — 15:38
AdGuard VPN for Windows 2.9.4
AdGuard VPN for Wi...harlan4096 — 08:24
Mozilla Firefox Browser 152.0.1
Mozilla Firefox Br...harlan4096 — 06:28
K-Lite Codec Pack 19.8.2 / 19.8.2 Update
Changes in 19.8.2:...harlan4096 — 06:26
HandBrake finally scales better on AMD T...
AMD fixes HandBrak...harlan4096 — 06:24

[-]
Birthdays
Today's Birthdays
avatar (40)storoBox
Upcoming Birthdays
avatar (39)Tedscolo
avatar (46)brakasig
avatar (48)kinotHeemn
avatar (39)Ceballos1976
avatar (40)efynu

[-]
Online Staff
There are no staff members currently online.

>