Google patches another worrying Chrome security flaw – so update now, or be at risk




  • Google patches four Chrome bugs, including actively exploited zero-day CVE-2025-10585
  • The zero-day is a type confusion flaw in V8 allowing potential arbitrary code execution
  • Chrome’s popularity makes it a prime target for cybercriminals exploiting browser vulnerabilities

Google has fixed four bugs found in its Chrome browser, including a zero-day that’s apparently being exploited in the wild.

In a security advisory, Google said it patched a heap buffer overflow in ANGLE (CVE-2025-10502), a user-after-free bug in WebRTC (CVE-2025-10501), and a separate use-after-free in Dawn (CVE-2025-10500). The fourth bug, the one being exploited as a zero-day, is a type confusion bug in V8.



Source link

Leave a Reply

Translate »
Share via
Copy link