Skip to content

Commit

Permalink
PR for 20240725003 (#896)
Browse files Browse the repository at this point in the history
commit-003
  • Loading branch information
daniellasurya authored Jul 25, 2024
1 parent bd71736 commit 06ac4d9
Showing 1 changed file with 21 additions and 0 deletions.
Original file line number Diff line number Diff line change
@@ -0,0 +1,21 @@
# Google Releases New Chrome Stable Version - 20240725003

## Overview

The WA SOC has been made aware of the release of Google Chrome stable versions. These are critical to mitigate multiple vulnerabilities discovered in Google Chrome that in the most severe case would allow a threat actor to perform arbitrary code execution.

## What is vulnerable?

| Product(s) Affected | Version(s) | CVE |
| ------------------- | -------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------- |
| Google Chrome | all versions below 127.0.6533.72 for Windows </br> all versions below 127.0.6533.73 for Mac </br> all versions below 127.0.6533.72 for Linux | CVE-2024-6988 </br> CVE-2024-6989 </br> CVE-2024-6991 </br> CVE-2024-6992 </br> CVE-2024-6993 </br> CVE-2024-6994 </br> CVE-2024-6995 </br> CVE-2024-6996 </br> CVE-2024-6997 </br> CVE-2024-6998 </br> CVE-2024-6999 </br> CVE-2024-7000 </br> CVE-2024-7001 </br> CVE-2024-7003 </br> CVE-2024-7004 </br> CVE-2024-7005 |

## Recommendation

The WA SOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframe of *1 month* (refer [Patch Management](../guidelines/patch-management.md)):

- Google: <https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html>

## Reference

- Center for Internet Security: <https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-google-chrome-could-allow-for-arbitrary-code-execution_2024-084>

0 comments on commit 06ac4d9

Please sign in to comment.