• Google releases emergency fix for yet another zero-day

    From TechnologyDaily@1337:1/100 to All on Thursday, December 11, 2025 19:30:08
    Google releases emergency fix for yet another zero-day

    Date:
    Thu, 11 Dec 2025 19:20:00 +0000

    Description:
    Details are being withheld until the patch is deployed.

    FULL STORY ======================================================================Google patched a highseverity Chrome zeroday alongside two mediumseverity flaws Vulnerability likely tied to a LibANGLE buffer overflow enabling memory corruption and remote code execution This marks Chromes eighth zeroday fix this year, underscoring ongoing browsertargeted attacks

    Google recently updated its Chrome browser to protect against a high-severity vulnerability that was being abused in the wild as a zero-day.

    In a security advisory published earlier this week, the browser giant said it fixed three bugs for Chrome, including two medium-severity ones, and one high-severity.

    For the latter, Google said it was aware that an exploit exists in the wild. Other details were not disclosed, in order to protect the users as the patch rolls out. This is standard practice for Google, withholding key details from the users - but also from cybercriminals and other hackers.

    Catch the price drop- Get 30% OFF for Enterprise and Business plans

    The Black Friday campaign offers 30% off for Enterprise and Business plans
    for a 1- or 2-year subscription. Its valid until December 10th, 2025. Customers must enter the promo code BLACKB2B-30 at checkout to redeem the offer. View Deal Crashing the browser

    Exact dates when the patch is expected to roll out is unknown, Google confirmed it will be coming to most users over the coming days/weeks. The Stable channel has been updated to 143.0.7499.109/.110 for Windows/Mac, and 143.0.7499.109 for Linux, and when we checked, the update was already installed.

    There is no official confirmation on what the bug is, but according to the Chromium bug ID, it was found in Googles open-source LibANGLE library, BleepingComputer reports. LibANGLE is a translation layer that converts
    OpenGL ES calls into other graphics APIs, usually Direct3D on Windows. It
    lets browsers and apps run WebGL and OpenGL ES content even if the operating system doesnt support those APIs natively.

    The same source claims the bug is most likely a buffer overflow vulnerability in ANGLEs Metal renderer, caused by improper buffer sizing. Crooks could have used the bug to corrupt memory, crash the browser, leak sensitive data, or even execute arbitrary code, remotely.

    This is the eighth zero-day vulnerability that Google fixed in its Chrome browser. Last year, the company addressed ten such vulnerabilities.

    Browsers are one of the most used pieces of software on a computer and as such, are always the target of different hacking campaigns.

    Via BleepingComputer

    Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the
    Follow button!

    And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/google-releases-emergency-fix-for-yet-a nother-zero-day


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)