Google stuffs attacked gap in Chrome

Outside the usual schedules, Google gave the Chrome web browser with an update on Tuesday night. It closes a security gap that is already being attacked on the Internet.

In the Writing the version of the version of Google’s developerthat the new version seals three security leaks. Any information is missing for a gap, which indicates that the programmers have discovered them internally.

In Google Chrome’s JavaScript engine V8, a weak point enables attackers to read and write outside of intended storage boundaries. An exploit in the wild has appeared for this weak point, so it is apparently already attacked. However, Google does not discuss what the weak point looks like, how attackers abuse or can be recognized (CVE-2025-5419 / EuVD-2025-16695CVSS to EuVD 8.8Risk “high“).

Interesting detail: Google’s developer wants to have defused the problem with a configuration change that they distributed to the Chrome browser in the Stable branch at the end of May. The update now corrects the problem correctly and comprehensively in the program code.

The update also deals with another weak point, a “use-finger-free” gap in the render engine of the Chrome browser (CVE-2025-5068 / EuVD-2025-16694CVSS to EuVD 8.8Risk according to Google “medium“, according to the EuVD”high“).. Program code accesses already approved resources, the content of which is undefined. Often, such errors can be misused for the execution of fitted malice code.

Chrome users should check whether the current state of the software is already active for you. This succeeds from calling the version dialog. It is located in the setting menu of the browser, which opens by clicking on the symbol with the three stacked points and the further path to “help” towards “via Google Chrome”.

The error -adjusted browser versions are Google Chrome 137.0.7151.72 for Android, 137.0.7151.68 for Linux and 137.0.7151.68/.69 for MacOS and Windows. Under Linux, calling the software management of the distribution is usually necessary for updating. Web browsers such as Microsoft’s Edge based on Chromium should also receive a security update for the plugs of the leaks – Microsoft has been distributed on Friday of the week.

See also:


Discover more from Apple News

Subscribe to get the latest posts sent to your email.

Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.