Google releases security updates to fix Chrome zero-day

Google releases security updates to fix Chrome zero-day

Google has issued emergency security updates to address an actively exploited vulnerability in its Chrome browser. This is the eight documented zero-day flaw patched by Google since the beginning of the year.

Tracked as CVE-2023-7024, the vulnerability is described as a heap-based buffer overflow issue in WebRTC, which can be abused for remote code execution. To do this, an attacker needs to trick the victim into visiting a malicious web page.

As per usual, Google withheld technical details, until a majority of users are updated with a fix.

“Google is aware that an exploit for CVE-2023-7024 exists in the wild,” the company noted, without sharing information on when and how the flaw was exploited.

Throughout the year, the tech giant addressed seven other Chrome zero-days:

Back to the list

Latest Posts

Qantas alerts customers to potential data breach after third-party cyberattack

Qantas alerts customers to potential data breach after third-party cyberattack

Attackers accessed and exfiltrated data from the compromised platform.
2 July 2025
US sanctions Russian bulletproof hosting for supporting cybercrime

US sanctions Russian bulletproof hosting for supporting cybercrime

The sanctions target Aeza Group’s parent entity, subsidiaries, and four individuals linked to the company’s leadership and operations.
2 July 2025
US agencies warn of rising cyber threats from Iran-linked hackers

US agencies warn of rising cyber threats from Iran-linked hackers

Recent months have seen a notable uptick in activity from Iranian-linked hacktivists and government-affiliated threat groups.
1 July 2025