Rewterz
Rewterz Threat Alert – Mac Backdoor Nukesped Linked to Lazarus Group
November 21, 2019
Rewterz
Rewterz Threat Alert – Ursnif Found in Admin Billing Phishing Campaign
November 21, 2019

Rewterz Threat Advisory – Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution

Severity

Medium

Analysis Summary

Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could result in arbitrary code execution. These vulnerabilities can be exploited if a user visits, or is redirected to, a specially crafted web page.

Use-after-free in Bluetooth (CVE-2019-13723)
Out-of-bounds access in Bluetooth (CVE-2019-13724)

Impact

Arbitrary code execution

Affected Vendors

Google

Affected Products

Google Chrome versions prior to 78.0.3904.108

Remediation

Update to version 78.0.3904.108.