Google Releases Emergency Chrome Patch Addressing Three Major Security Flaws
Google has released a critical security update for its Chrome browser, addressing three high-severity vulnerabilities. This update affects users on Windows, Mac, and Linux platforms, focusing on patching significant flaws that could compromise system…
Google has released a critical security update for its Chrome browser, addressing three high-severity vulnerabilities. This update affects users on Windows, Mac, and Linux platforms, focusing on patching significant flaws that could compromise system security and user data.
The update advances the stable channel to version 145.0.7632.116/117 for Windows and Mac, and 144.0.7559.116 for Linux users. Google has announced that the rollout will proceed over the coming days and weeks. Users are advised to update their browsers to the latest version promptly to mitigate risks associated with these vulnerabilities.
The security update addresses three key vulnerabilities, all classified as high severity:
The first flaw involves an out-of-bounds read error within Chrome's Media component. Such vulnerabilities can lead to application crashes or allow attackers to access sensitive information from adjacent memory locations, compromising data confidentiality. The second issue is an out-of-bounds read and write vulnerability in Tint, a component used for shader translation. This flaw is particularly dangerous as it may allow attackers to corrupt memory and execute arbitrary code on a victim's machine. The third vulnerability pertains to an inappropriate implementation within Chrome's DevTools, which could be exploited to bypass security restrictions or manipulate browser behavior.
CVE ID Severity Description Component Reporter
Google has released a critical security update for its Chrome browser, addressing three high-severity vulnerabilities.
CVE-2026-3061 High Out of bounds read Media Luke Francis
CVE-2026-3062 High Out of bounds read and write Tint cinzinga
CVE-2026-3063 High Inappropriate implementation DevTools M. Fauzan Wijaya (Gh05t666nero)
Google maintains a policy of keeping detailed bug information and links restricted until a majority of users have updated to the patched version. This approach helps prevent threat actors from reverse-engineering the fixes and developing exploits before users can protect themselves. The company also recognizes the contributions of independent security researchers who reported these flaws, emphasizing the importance of collaborative security efforts.
Users are encouraged to manually check for updates in their Chrome settings to ensure protection against these newly disclosed vulnerabilities.
Based on reporting by GBHackers.
