Skip to main content

Security Alert: Urgent Google Chrome/Microsoft Edge Patch

Date:
2023-04-17 17:25:00
Status:
Closed
Brief Description:
A zero-day vulnerability in Google Chrome and Microsoft Edge may lead to arbitrary code execution or sensitive information disclosure. Google states this vulnerability is being actively exploited. Patch now.
Current Status:
N/A
Services Affected:
Certified Desktop
Full Description:
A zero-day vulnerability in Google Chrome and Microsoft Edge for Windows, macOS, and Linux may lead to arbitrary code execution or sensitive information disclosure. The vulnerability is a type confusion bug in the V8 JavaScript engine. Google states this vulnerability is being actively exploited. Patch now.

For Google Chrome:
To check if your browser is updated, navigate to Settings > Help > About Google Chrome or chrome://settings/help in the address bar. If your Chrome browser is listed as 112.0.5615.121 or higher, you are protected.

For Microsoft Edge:
To check if your browser is updated, navigate to Menu > Help and Feedback > About Microsoft Edge, or edge://settings/help in the address bar. If your Edge browser is listed as 112.0.1722.48 or higher, you are protected.

Users should apply the following updates:
• Google Chrome 112.0.5615.121 or higher
• Microsoft Edge 112.0.1722.48 or higher

Certified Desktop customers:
• Windows: Patches for Google Chrome and Microsoft Edge will be available today, Monday, April 17, with an install deadline of 4:00 pm on Tuesday, April 18.

• macOS: A patch Google Chrome will be available today, Monday, April 17, with an install deadline of 4:00 pm on Tuesday, April 18.

Users who do not have a managed computer and macOS Microsoft Edge users should check for updates and install them.

References:
Google Chrome Releases: https://chromereleases.googleblog.com/2023/04/stable-channel-update-for-desktop_14.html
Release Notes for Microsoft Edge Security Updates: https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security
Bleeping Computer: https://www.bleepingcomputer.com/news/security/google-chrome-emergency-update-fixes-first-zero-day-of-2023/
CIT TDX ID: