Google releases Chrome 96 security update (96.0.4664.110) with fix for High risk zero-day exploited in the wild

Google releases Chrome 96 security update (96.0.4664.110) with fix for 1 High risk zero-day exploited in the wild

Google has released Chrome 96 security update (96.0.4664.110) for Windows, Mac and Linux with a fix for one High risk vulnerability exploited in the wild.

An attacker could exploit these vulnerabilities to take control of impacted systems.

The Chrome security update patched 5 vulnerabilities in all, to include one Critical vulnerability and 4 High severity vulnerabilities, each discovered by external researchers (those in bold have exploits in the wild):

  • CVE-2021-4098: Insufficient data validation in Mojo (Critical).
  • CVE-2021-4099: Use after free in Swiftshader (High).
  • CVE-2021-4100: Object lifecycle issue in ANGLE (High).
  • CVE-2021-4101: Heap buffer overflow in Swiftshader (High).
  • CVE-2021-4102: Use after free in V8 (High).

Google is also aware of reports that “an exploit for CVE-2021-4102 exists in the wild.”

Related Articles