India Issues Urgent Chrome Security Warning
Nature of the Vulnerability
CERT-In identified an “Out of bounds write” vulnerability in Chrome’s V8 engine, which processes JavaScript code. This flaw enables remote attackers to execute arbitrary code by tricking users into visiting malicious websites or links. The vulnerability affects Chrome versions prior to 139.0.7258.138/.139 on Windows and Mac, and prior to 139.0.7258.138 on Linux.
Risks and Impact
If exploited, attackers could gain control over Chrome processes, steal personal information, install malware, or crash systems. Both personal users and organizations relying on Chrome for sensitive communications and operations are at risk. The alert underscores the growing threat landscape targeting popular browsers and the importance of timely updates.
Recommended Action
Users should immediately update Chrome by navigating to the browser’s menu → Settings → About Chrome to check for latest updates. Restarting the browser after installation is essential for the patches to take effect. CERT-In emphasizes that delaying updates increases vulnerability exposure, making systems prime targets for cyberattacks.