$ techbeacon▋
Ransomware

Google Chrome 154 Patch Closes Dozens of Vulnerabilities, Targets Critical ANGLE Flaw

Google Chrome 154 Patch Closes Dozens of Vulnerabilities, Targets Critical ANGLE Flaw

Google rolled out Chrome version 154 for desktop users, delivering fixes for 32 identified security weaknesses. Among the patches, a critical buffer overflow in the ANGLE graphics translation layer received top priority, prompting the company to accelerate the update across supported platforms.

ANGLE, which translates OpenGL ES calls to DirectX or Vulkan APIs, is a core component for rendering web content on Windows and macOS. A flaw that allows memory corruption can be exploited to execute arbitrary code, making it a high‑risk vector for attackers seeking to compromise browsers through malicious web pages.

The update is being distributed as build 154.0.8037.92 for Windows and 154.0.8037.93 for macOS. Users who have automatic updates enabled should receive the patch within hours, while those on manual update settings are advised to check the Chrome “About” screen and initiate the download.

Chrome’s rapid release cadence, typically delivering a new major version every six weeks, reflects Google’s strategy of staying ahead of emerging threats. By bundling multiple fixes into a single release, the browser aims to reduce the window of exposure for both consumers and enterprise environments that rely heavily on Chrome for daily operations.

Security experts recommend that organizations enforce timely updates on all managed devices, as unpatched browsers remain a common entry point for malware and ransomware campaigns. The critical ANGLE bug, in particular, could be leveraged in drive‑by attacks that require no user interaction beyond visiting a compromised site.

Looking forward, Google has signaled that its security team continues to monitor the codebase for additional vulnerabilities, with the next scheduled release slated for early next month. Users can expect ongoing enhancements to Chrome’s sandboxing, same‑origin protections, and cryptographic modules as part of the broader effort to safeguard the web ecosystem.

Source: GBHackers
Arjun Pratap Rana — Arjun reports on data breaches and corporate security incidents, focusing on how leaks happen and what they mean for affected users. Verifies claims against HaveIBeenPwned and leak listings.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related