The Indian government has issued a critical warning for Android users regarding high-risk vulnerabilities in Google Chrome and Android operating systems. The alert, issued by the Indian Computer Emergency Response Team (CERT-In), emphasizes the need for immediate updates to protect devices from potential cyber threats.
Key Vulnerabilities Identified
CERT-In’s advisories (CIVN-2024-0319 and CIVN-2024-0318) highlight significant vulnerabilities that could allow hackers to gain control over devices, leading to severe security breaches. The affected Android versions include:
- Android 12
- Android 12L
- Android 13
- Android 14
- Android 15
These vulnerabilities impact critical components of the Android framework, including those from MediaTek and Qualcomm. Exploiting these flaws could enable attackers to execute code with elevated privileges, steal sensitive information, and compromise user privacy.
Specific Risks in Google Chrome
The advisories also address several vulnerabilities in Google Chrome, including:
- Integer Overflow in the Layout Feature
- Inappropriate Implementation in the V8 JavaScript Engine
- Type Confusion in V8
Attackers can exploit these vulnerabilities through malicious websites, tricking users into visiting specially crafted pages. This can lead to unauthorized system access, data theft, and malware installation.
Recommended Actions for Users
Update Google Chrome:
To safeguard against vulnerabilities in Chrome, users should ensure they are running the latest version. The current stable version is:
- Windows and Mac: 129.0.6668.100
- Linux: 129.0.6668.89
To check for updates:
- Open Chrome and go to the “About” section.
- Follow prompts to install any available updates.
Update Android Devices:
Google is rolling out security patches for the affected Android versions. To protect your device:
- Go to the “Settings” section.
- Check for system updates and install any available patches.
CERT-In advises all users to promptly apply security updates to minimize the risk of cyberattacks. Staying vigilant and proactive is essential in today’s digital landscape.
Leave a Reply