Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

Google Rushes Out Critical Chrome Update to Address Serious PDFium and V8 Vulnerabilities

Google has released an essential security update for the Chrome browser, addressing three critical vulnerabilities that could allow attackers to execute unauthorized code on user devices.

Google has released an essential security update for the Chrome browser, addressing three critical vulnerabilities that could allow attackers to execute unauthorized code on user devices.

The update increases the Chrome versions to 145.0.7632.109/.110 for Windows and Mac, and 144.0.7559.109 for Linux.

Among the resolved issues are high-severity vulnerabilities within PDFium, the component responsible for PDF handling in Chrome, and V8, the high-performance JavaScript engine. These vulnerabilities could be exploited through malicious websites or documents.

PDFium vulnerabilities are associated with the processing of compromised PDFs, potentially leading to memory overflows and remote code execution. V8 vulnerabilities involve integer overflows that could interfere with numerical operations in web scripts, potentially bypassing security measures. The third vulnerability pertains to media playback, a frequent target for exploits.

The update increases the Chrome versions to 145.0.7632.109/.110 for Windows and Mac, and 144.0.7559.109 for Linux.
Kyle Mercer · Thehackingpost

The identified vulnerabilities are currently classified as high risk, with Google withholding detailed information until the patch is more widely implemented.

CVE-2026-2648: High-severity heap buffer overflow in PDFium, potentially enabling remote code execution. CVE-2026-2649: High-severity integer overflow in V8, leading to heap structure corruption and potential remote code execution. CVE-2026-2650: Medium-severity heap buffer overflow in media buffers, particularly through malformed web videos or embeds.

According to Google's advisory , the vulnerabilities will remain confidential until a majority of users have updated their browsers. Google's internal security team identified the media-related issue using fuzzing tools like libFuzzer and AddressSanitizer.

Advertisement

Although Chrome's multi-process sandbox and site isolation features mitigate many attacks, these vulnerabilities underscore the importance of timely updates. Users are advised to update Chrome by navigating to Help > About Google Chrome, where updates are automatically checked and installed. Enterprises can deploy updates via Group Policy or MDM tools.

Based on reporting by GBHackers.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories