Chrome修補7個安全漏洞,其中一個已遭攻擊
· 2023-12-01

Google發現駭客已利用Skia繪圖引擎的安全漏洞CVE-2023-6345發動零時差攻擊,而Skia被廣泛應用在Chrome瀏覽器、ChromeOS、Firefox、 Mozilla Thunderbird、Android、Firefox OS、Flutter等產品中

背景/Oleg Illarionov on Unsplash

Google周二(11/28)更新了Chrome瀏覽器,緊急修補11月24日才被發現的零時差漏洞CVE-2023-6345,也順便修補了其它的6個安全漏洞。此一更新適用於Windows、MacOS與Linux,且為Google今年所修補的第6個已遭攻擊的Chrome零時差漏洞。

CVE-2023-6345是個存在於Skia繪圖引擎的整數溢位漏洞,Skia為一以C++撰寫的2D圖形庫,Google在2005年買下Skia並將它開源,被應用在Chrome瀏覽器、ChromeOS、Firefox、 Mozilla Thunderbird、Android、Firefox OS、Flutter、Avalonia及LibreOffice等產品中。

該漏洞是由Google威脅分析小組(Threat Analysis Group,TAG)的兩名研究人員在11月24日所發現,且已有針對該漏洞的攻擊程式現身。

Popular articles
Kazakhstan plans to penalise online casino promotions
Regulation
British gambling levy rates confirmed for each vertical
Regulation
Indiana online casino bill stalls in House committee
Regulation
JILI Partners with Cricket Legend AB de Villiers (ABD) to Launch Exclusive Branded Game Series 100% 11
Sports Game
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
GAT CDMX 2025 Institutional Academy: Leaders and Experts Analyze the Present and Future of the Gaming Industry in Mexico and Lat
Sports Game
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
B2B Tech Infrastructure Gains Momentum in Philippine Gaming Sector
Southeast Asia
Are you ready to maximize your earnings? Try ProPush.me Constructor!
Marketing
1spin4win releases unique slot Don Catleone Hold and Win featuring gangster cats
Online Game
Super PAC Raises $48 Million: Sports Betting Forces Ramp Up Political Push
Regulation
Institutional Academy that exceeded expectations marked the opening of GAT CDMX
Online Game
GGC Awards 2026 Shines in Colombo: Honoring Leaders and Innovators in the iGaming Industry
HUIDU Focus
PropellerAds Shared a New iGaming Case Study: 97,674 Installs and 12,701 Deposits in 3 Months
Marketing
Across 6 Cities: HUIDU Invites You to 8 World Cup Parties Redefining High-Value Social Networking
HUIDU Focus
Home
Game
Cooperation
Find
My