About the Vulnerability

Introduction

Google Chrome is a web browser developed by Google. It is written based on other open-source software, including WebKit, with the aim of enhancing stability, speed, and security, and creating a simple and efficient user interface.

Summary

On February 19, 2025, Sangfor FarSight Labs received notification that a Google-Chrome component contains information of Buffer Overflow Vulnerability(CVE-2025-0999), classified as high in threat level.

A critical heap buffer overflow vulnerability exists in the V8 JavaScript engine of the Chrome browser. Attackers can exploit this vulnerability to execute arbitrary code and gain user system privileges, leading to a system compromise.

Affected Versions

Google Chrome < 133.0.6943.126

Solutions

Remediation Solutions

Check the System Version

To check the current version of Chrome, open the Chrome browser and click on Settings—About Chrome.

Official Solution

The latest version has been officially released by Google to fix the vulnerability. Affected users are advised to update the version of chrome browser to the following versions:

133.0.6943.126/.127 for Windows, Mac

133.0.6943.126 for Linux

Download link: https://www.google.cn/intl/zh-CN/chrome/

Timeline

On February 19, 2025, Sangfor FarSight Labs received notification of Google Chrome Browser Buffer Overflow Vulnerability.

On February 19, 2025, Sangfor FarSight Labs released a vulnerability alert.

Reference

https://chromereleases.googleblog.com/2025/02/stable-channel-update-for-desktop_18.html

Listen To This Post

Search

Get in Touch

Get in Touch with Sangfor Team for Business Inquiry

Name
Email Address
Business Phone Number
Tell us about your project requirements

Related Articles

CVE-2025-34028: Commvault Remote Code Execution

Date : 25 Apr 2025
Read Now

CVE-2025-30727: Oracle E-Business Suite Remote Code Execution

Date : 16 Apr 2025
Read Now

CVE-2025-22457: Buffer Overflow Vulnerability in Multiple Ivanti Products

Date : 14 Apr 2025
Read Now

See Other Product

Platform-X
Sangfor Access Secure - A SASE Solution
Sangfor SSL VPN
Best Darktrace Cyber Security Competitors and Alternatives in 2025
Sangfor Omni-Command
Replace your Enterprise NGAV with Sangfor Endpoint Secure