Google on Thursday rolled out a fresh Chrome 151 update that patches 41 critical- and high-severity vulnerabilities.
Over two dozen security defects are memory safety bugs that could lead to data corruption, crashes, and arbitrary code execution.
The latest Chrome update resolves six critical-severity flaws, including five use-after-free issues in WebGL, Aura, Skia, and Views, and an out-of-bounds write in the ANGLE graphics engine.
Google credited external researchers for finding the two WebGL security defects, but has yet to determine the bug bounty rewards for them. The other four weaknesses were found by Google.
All the remaining 35 vulnerabilities resolved with the Chrome refresh are high-severity flaws. Google discovered 25 of them and credited external researchers for the other 10, but disclosed only two of the rewards it has handed out, both of $500.
Of the 35 issues, 24 are memory safety bugs, including use-after-free, buffer overflow, out-of-bounds write, and uninitialized use defects.
The remaining flaws include insufficient validations of untrusted input, inappropriate implementations, race conditions, and integer overflows.
While the new Chrome update does not include as many fixes as most of the recent browser refreshes, it does show that Google’s use of AI drives a faster patching pace.
The latest Chrome iteration is now rolling out as versions 151.0.7922.108/.109 for Windows and macOS, and as version 151.0.7922.108 for Linux.
While Google makes no mention of any of these vulnerabilities being exploited in the wild, users are advised to update their browsers as soon as possible.
Related: Chrome 151 Patches 370 Vulnerabilities
Related: Critical Paperclip Flaw Allowed Admin Access, Code Execution
Related: Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities
Related: Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability