Big Google Chrome security bug fixed
Google has patched a Chrome security bug that allowed cyber criminals to execute code and take over your system.
The Chrome vulnerability was discovered by Aleksandar Nikolic of Cisco Talos, who identified an exploitable heap buffer overflow vulnerability in the PDFium PDF reader.
PDFium is the default PDF reader included in Chrome.
“By simply viewing a PDF document that includes an embedded jpeg2000 image, the attacker can achieve arbitrary code execution on the victim’s system,” said Cisco Talos.
“The most effective attack vector is for the threat actor to place a malicious PDF file on a website, and then redirect victims to the website using either phishing emails or malvertising.”
Google has released a patch to fix the issue, which it said contained “a number of fixes and improvements”.
More on Chrome
Google will block Flash in Chrome
Chromebooks set to receive Android apps