City
Epaper

CERT-In warns users of multiple bugs in Google Chrome, Zoho software

By IANS | Updated: July 7, 2022 15:05 IST

New Delhi, July 7 The Indian Computer Emergency Response Team (CERT-In), which comes under the IT Ministry, has ...

Open in App

New Delhi, July 7 The Indian Computer Emergency Response Team (CERT-In), which comes under the IT Ministry, has warned users of multiple vulnerabilities in Google Chrome which could allow a remote attacker to execute arbitrary code and denial-of-service (DoS) conditions on the targeted system.

A remote attacker could exploit these vulnerabilities by sending specially crafted requests on the targeted system.

"Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary code and denial-of-service (DoS) conditions on the targeted system," said CERT-In the advisory late on Wednesday.

These vulnerabilities exist in Google Chrome due to 'Heap Buffer' overflow in 'WebRTC', 'Type Confusion in V8' and 'Use after Free' in Chrome OS Shell.

The vulnerability (CVE-2022-2294) is being exploited in the wild, said the cyber agency, adding that the users are advised to apply patches urgently.

CERT-In also advised users against a 'Remote Code Execution' vulnerability that has been reported in a Zoho Corporation software which could be exploited by an unauthenticated remote attacker to execute arbitrary code on the targeted system.

This vulnerability exists in 'Zoho ManageEngine ADAudit Plus' due to a 'misconfigured XML' parser that processes user-supplied input without sufficient validation.

"Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the targeted system," warned the cyber agency, advising the users to upgrade to the latest Zoho 'ManageEngine ADAudit Plus' security build update.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Secure ShellgoogleWord on macWho dgMicrosoft incUs google & youtubeSk duaDan patelBacPrivate institutesStory of reality tv
Open in App

Related Stories

MumbaiCyber Fraud in Mumbai: Elderly Woman Loses Rs 98,202 After Calling Fake Customer Care Number Found on Internet

NationalBITS Pilani Placement 2025: Over 80% Students Placed, Average Salary Rises to Rs 19.4 Lakh

TechnologyPixel 6a Battery Replacement: Google Offers Free Battery Change for Affected Devices in India; Check Details Inside

Technology'In Memory of Victims': What Does the Black Ribbon Below Google Search Bar Mean?

Social ViralToday’s Google Googly: Where Did the Arabic Numerals Originate? Find the Correct Answer Here

International Realted Stories

InternationalUAE carries out 69th airdrop of aid, delivers 500 tonnes of food aid into Gaza

InternationalPM Modi speaks with Uzbekistan President, two leaders agree to advance Strategic Partnership

InternationalBAPS Temple condemns 4th BAPS Temple condemns fourth desecration incident on its premises this yeardesecration incident on its premises this year

InternationalBAPS Mandir thanks US Congressman for condemning desecration of premises

InternationalBangladesh targets USD 63.5 billion exports of goods and services in 2025-26 fiscal year