Google has released an outstanding update of its Chrome browser for Windows. Chrome update 103.0.5060.114 should fix critical zero-day vulnerability CVE-2022-2294, which is heavily used by attackers in attacks.
The vulnerability is assigned a high risk rating. Google is not yet disclosing the details of the vulnerability and its exploits so as not to provide additional information to cybercriminals. google said:
Access to error information may be restricted until most users receive the fix. If there are bugs in third-party libraries that other projects depend on, we will maintain restrictions even if they haven’t received a fix yet.
However, Avast is already known to have a buffer overflow vulnerability discovered by Jan Voytesek in the WebRTC (Web Real-Time Communication) component.
Google says the Chrome update will be rolled out to users automatically in the coming weeks. However, you can manually install the update right away by going to the Chrome menu > Help > About Google Chrome. Source