What is the Vulnerability?
A zero-day vulnerability in Google Chrome is actively exploited in the wild. The vulnerability is a Heap buffer overflow issue in the open-source WebRTC framework. Many other web browsers, such as Mozilla Firefox, Safari, and Microsoft Edge, also use the WebRTC framework to provide Real-Time Communications (RTC) capabilities. A successful exploitation of the vulnerability via a crafted HTML page could allow an attacker to execute arbitrary code on the affected system.
What is the Vendor Solution?
Google has released security updates to address this high-severity zero-day vulnerability (CVE-2023-7024) in Google Chrome. Chromium-based browsers such as Microsoft Edge are also affected by this vulnerability. Users of Google Chrome are advised to upgrade their browser to the latest version. [ Link ]
What FortiGuard Coverage is available?
FortiGuard Labs is investigating for possible protection where applicable.
FortiGuard Labs has an Endpoint Vulnerability signature for CVE-2023-4966 to detect devices that are running on a vulnerable software.
Meanwhile, users are encouraged to enable automatic updates in their Chrome browser to ensure that their software is updated promptly.
More Stories
cri-o1.31-1.31.7-1.fc43
FEDORA-2025-556d8c02d7 Packages in this update: cri-o1.31-1.31.7-1.fc43 Update description: Automatic update for cri-o1.31-1.31.7-1.fc43. Changelog * Wed Apr 2 2025 Bradley G...
zabbix-7.2.5-1.fc42
FEDORA-2025-700a59e277 Packages in this update: zabbix-7.2.5-1.fc42 Update description: Update to 7.2.5 (CVE-2024-36469, CVE-2024-42325, CVE-2024-45700) Read More
zabbix7.0-7.0.11-1.el8
FEDORA-EPEL-2025-01e745cb85 Packages in this update: zabbix7.0-7.0.11-1.el8 Update description: Update to 7.0.11 CVE-2024-36465, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699, CVE-2024-45700 Re-install SELinux module in...
zabbix7.0-7.0.11-1.el9
FEDORA-EPEL-2025-80a466f7f5 Packages in this update: zabbix7.0-7.0.11-1.el9 Update description: Update to 7.0.11 CVE-2024-36465, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699, CVE-2024-45700 Re-install SELinux module in...
zabbix6.0-6.0.39-1.el8
FEDORA-EPEL-2025-77875be662 Packages in this update: zabbix6.0-6.0.39-1.el8 Update description: Update to 6.0.39 CVE-2024-45700, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699 Fix selinux module name in...
zabbix-7.0.11-1.fc41
FEDORA-2025-a7a06a72c8 Packages in this update: zabbix-7.0.11-1.fc41 Update description: Update to 7.0.11 CVE-2024-36465, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699, CVE-2024-45700 Read More