Google Chrome Security Updates - 20240613001¶
Overview¶
Google has released updates addressing multiple vulnerabilities discovered in Google Chrome. The most severe of which could allow for arbitrary code execution.
What is vulnerable?¶
CVE | Severity | CVSS | Product(s) Affected | Dated |
---|---|---|---|---|
CVE-2024-5830 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5831 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5832 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5833 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5834 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5835 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5836 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5837 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5838 | High | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5839 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5840 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5841 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5842 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5843 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5844 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5845 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5846 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
CVE-2024-5847 | Medium | N.A | Chrome - prior to 126.0.6478.56/57 for Windows and Mac - prior to 126.0.6478.54 for Linux |
06/11/2024 |
What has been observed?¶
There is no evidence of exploitation affecting Western Australian Government networks at the time of publishing.
Recommendation¶
The WA SOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframe of one month... (refer Patch Management):
- Update Google Chrome to version:
- 126.0.6478.56/57 or later for Windows/Mac
- 126.0.6478.54 or later for Linux