Computer Emergency Response Team of India (CERT-In) has issued a Vulnerability Note, CIVN-2023-0131, highlighting multiple vulnerabilities present in Google ChromeOS. These vulnerabilities pose a significant threat, potentially enabling remote attackers to gain access to sensitive information, execute arbitrary code or cause a denial-of-service (DoS) condition on affected systems.
The government body has classified the vulnerability as High severity and has advised users using certain versions of ChromeOS to take urgent action to address them and protect themselves from potential exploitation.
Versions affected
According to the report, Google ChromeOS versions prior to 15393.48.0 (Platform version: 113.0.5672.114) have been identified as vulnerable. The severity rating is deemed high due to the potential impact on system security.
The vulnerabilities exist in ChromeOS due to use-after-free errors and memory corruption in ChromeOS to exploit these vulnerabilities. Attackers can…