Tuesday, 02 January 2024 12:17 GMT

GOI Issues High-Risk Chrome And Android Security Alert


(MENAFN- Kashmir Observer) Srinagar- A high-severity security alert has been issued for Google Chrome users on Windows, macOS, Linux, and smartphones running Android 13, 14, and 15, according to a new advisory from the Indian Computer Emergency Response Team (CERT-In).

The alert warns of critical vulnerabilities in Chrome's core components-including Compositing, libvpx, V8, FileSystemAccess API, Background Fetch API, and Tab Strip-that can be exploited by remote attackers. By luring users to malicious websites, hackers could potentially steal sensitive data, execute arbitrary code, or even crash systems, leading to denial of service (DoS).

Who's Affected?
  • Chrome versions before 137.0.7151.55 (Linux)
  • Chrome versions before 137.0.7151.55/56 (Windows, macOS)
  • Android 13, 14, and 15 devices across all OEMs (Samsung, Xiaomi, OnePlus, etc.)

CERT-In has flagged these issues as“High Risk”, warning that both individuals and organizations are susceptible. The vulnerabilities stem from“Use-after-free” flaws, out-of-bounds writes, and inappropriate API implementations, making Chrome and Android lucrative targets for cyberattacks.

What Makes This Serious?
  • Chrome is the most widely used browser globally, often linked to banking, email, and corporate platforms.
  • The bugs allow hackers to bypass traditional security measures and manipulate users into opening dangerous web pages.
  • Vulnerabilities in Android components-such as Framework, Runtime, Qualcomm, and Google Play-could let attackers gain elevated privileges or access private data, especially concerning users storing personal and financial information on their phones.
What You Should Do
  • Chrome Users:
    → Open Chrome > Click the three dots > Help > About Google Chrome
    → If your version is below 137.0.7151.55/56, update immediately via Chrome's stable channel.
  • Android Users:
    → Go to Settings > System > Software Update
    → Install patches once released by your phone manufacturer (OEM).
Expert Tip:

Enable auto-updates for both Chrome and your Android OS to receive critical security patches as soon as they're released. Avoid clicking on suspicious links or downloading files from untrusted sources.

Follow this link to join our WhatsApp group : Join Now

Read Also The Tech Tide Rising in Kashmir MediaTek To Start Rolling Out World's Smallest Chip From September

Be Part of Quality Journalism

Quality journalism takes a lot of time, money and hard work to produce and despite all the hardships we still do it. Our reporters and editors are working overtime in Kashmir and beyond to cover what you care about, break big stories, and expose injustices that can change lives. Today more people are reading Kashmir Observer than ever, but only a handful are paying while advertising revenues are falling fast.

ACT NOW
MONTHLY Rs 100
YEARLY Rs 1000
LIFETIME Rs 10000
Donate Now Donate Now

CLICK FOR DETAILS

MENAFN19062025000215011059ID1109698124



Kashmir Observer

Legal Disclaimer:
MENAFN provides the information “as is” without warranty of any kind. We do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the provider above.

Search