Chrome Browser Update Fixes Critical Security Flaws

www.news4hackers.com-chrome-browser-update-fixes-critical-security-flaws-chrome-browser-update-fixes-critical-security-flaws

Chrome 148 Update Addresses Critical Security Vulnerabilities

The recent Chrome 148 update aims to resolve 116 security vulnerabilities, including 14 critical-severity bugs across various components.

  • Critical Issues Resolved

  • Heap Buffer Overflow in WebML (CVE-2026-8509)

  • A researcher discovered a heap buffer overflow in WebML, earning them a $43,000 bug bounty. This vulnerability allows for remote code execution, though the specifics remain undisclosed.

  • Integer Overflow Weakness in Skia (CVE-2026-8510)

  • An integer overflow weakness in Skia was reported, warranting a $25,000 reward. Details about this vulnerability are not publicly disclosed.

  • Other Critical-Security Defects

  • Google resolved 12 additional critical-severity security defects in UI, FileSystem, Input, Aura, HID, Blink, Tab Groups, and Te. Unfortunately, more information on these vulnerabilities is not available.

“None of the issues addressed in this update have been exploited in the wild.” – Google

The Chrome 148 update is currently available as version 148.0.7778.167 for Linux and as versions 148.0.7778.167/168 for Windows and macOS. Additionally, a separate security update has been released for Firefox, addressing five high-severity flaws in JIT, WebAssembly, JavaScript Engine, and Profile Backup.



About Author

en_USEnglish