Skip to main content

Google Releases Security Update for Exploited Vulnerability CVE-2024-5274

Security update addresses an exploited type confusion vulnerability in Google Chrome

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

Security update addresses an exploited type confusion vulnerability in Google Chrome


Threat details

Introduction

Google has released a security update that addresses one exploited vulnerability in Google Chrome for Windows, macOS, and Linux.

CVE-2024-5274 is a type confusion vulnerability in V8, which is the JavaScript (JS) engine responsible for executing JS code in Chrome. 

Exploit for CVE-2024-5274 in the wild

Google acknowledges that an exploit for CVE-2024-4947 exists in the wild.


Remediation advice

Affected organisations are encouraged to review the Chrome Release 125.0.6422.112/.113 advisory and apply the update for the latest release.



Last edited: 24 May 2024 2:06 pm