Overview
- India’s cybersecurity agency issued a high-severity advisory on August 26 for an out-of-bounds write in Chrome’s V8 engine that can be triggered by a specially crafted request.
- Chrome desktop releases earlier than 139.0.7258.138/.139 on Windows and macOS, and earlier than 139.0.7258.138 on Linux, are listed as vulnerable.
- Google has shipped patched builds, and devices remain exposed until the new version is installed.
- To update, open Chrome, go to the three-dot menu, select Settings, then About Chrome to fetch the update, and restart the browser.
- CERT-In warned that millions of personal and business users could be at risk until they apply the fix.