Security13.06.2016

Big Google Chrome security bug fixed

Google Chrome logo on wall

Google has patched a Chrome security bug that allowed cyber criminals to execute code and take over your system.

The Chrome vulnerability was discovered by Aleksandar Nikolic of Cisco Talos, who identified an exploitable heap buffer overflow vulnerability in the PDFium PDF reader.

PDFium is the default PDF reader included in Chrome.

“By simply viewing a PDF document that includes an embedded jpeg2000 image, the attacker can achieve arbitrary code execution on the victim’s system,” said Cisco Talos.

“The most effective attack vector is for the threat actor to place a malicious PDF file on a website, and then redirect victims to the website using either phishing emails or malvertising.”

Google has released a patch to fix the issue, which it said contained “a number of fixes and improvements”.

More on Chrome

New Google Chrome for Android

Google will block Flash in Chrome

Chromebooks set to receive Android apps

Show comments

Latest news

More news

Trending news

Poll

Which brand of hard drive are you most likely to buy?

View Results

Loading ... Loading ...
Sign up to the MyBroadband newsletter