The Vulnerability Stems From a Use-after-free Flaw in Chrome’s CSS Rendering Component

Advertisment

The Indian government has issued a cybersecurity alert for Google Chrome users, informing them about a critical vulnerability. This susceptible weakpoint might allow attackers to compromise system security and operations considerably. Users have been advised to update their browsers to the latest version post haste.

Government Issues Warning for Google Chrome Users

The advisory released by the Indian Computer Emergency Response Team (CERT-In) said that Chrome browser versions older than 144.0.7559.75 on Linux, and 145.0.7632.75/76 on Windows and Mac, are vulnerable to the risk.

"A vulnerability has been reported in Google Chrome, which could allow a remote attacker to execute arbitrary code on the targeted system," CERT-In wrote. 

Advertisment

It is caused by a "Use-After-Free" bug in the browser's CSS component. This allows Chrome to use some memory even after deletion. Hackers can take advantage of this bug.

"A remote attacker could exploit the vulnerability by convincing a user to visit a specially crafted HTML webpage. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the targeted system," the advisory stated.

Consequences of the Vulnerability

The advisory states that an attacker might trick a user into clicking on a bad link that opens a maliciously designed site. Upon visiting this address, scammers have an opportunity to exploit the victim’s computer.

Advertisment

If they are successful in this effort, these criminals might run malicious programs on the victim’s device and steal information, observe the victim’s activity, and obtain full access to the victim’s PC.

How Can You Protect Yourself

The nation’s cybersecurity agency has asked citizens to upgrade their Google Chrome web browser. Updating it to the most recent version is expected to resolve these security issues promptly.

Users can refine their Google Chrome profile’s security by clicking on the "Settings" and selecting "About Google Chrome" option. The application will self-check for the latest release and begin downloading it.

Advertisment