SECURITY ALERTS

A Vulnerability (CVE-2022-1096) Exists in Google Chrome, Microsoft Edge, Brave, Vivaldi and Opera Could Allow for Arbitrary Code Execution

DESCRIPTION:
A Vulnerability (CVE-2022-1096) Exists in Google Chrome, Microsoft Edge, Brave, Vivaldi and Opera which based on Chromium. A Type Confusion in V8 JavaScript engine exploit has been identified as a vulnerability that exists in the field and is being actively exploited. In the application's memory, this results in logical flaws which may allow an attacker to execute unconstrained malicious code within the application, and allow attackers for arbitrary code execution.

 

AFFECTED RELEASES:
Google Chrome prior to 99.0.4844.84
Microsoft Edge prior to 99.0.1150.55
Brave prior to 1.36.122
Vivaldi prior to 5.1.2567.73
Opera prior to 85.0.4341.28

 

SOLUTION:
Upgrade to at least Google Chrome 99.0.4844.84 by following steps:
1. Open the Google Chrome browser.
2. Enter “chrome://settings/help” in the address bar. The window that appears will automatically check for updates and show you the current version of Chrome.
3. After Chrome is updated, click the “RELAUNCH” option to restart Chrome and complete the update.

Upgrade to at least Microsoft Edge 99.0.1150.55 by following steps:
1. Open the Microsoft Edge browser.
2. Enter “edge://settings/help” in the address bar. The window that appears will automatically check for updates and show you the current version of Edge.
3. After Edge is updated, click the “RELAUNCH” option to restart Edge and complete the update.

Upgrade to at least Brave 1.36.122 by following steps:
1. Open the Brave browser.
2. Enter “brave://settings/help” in the address bar. The window that appears will automatically check for updates and show you the current version of Brave.
3. After Brave is updated, click the “RELAUNCH” option to restart Brave and complete the update.

Upgrade to at least Vivaldi 5.1.2567.73 by following steps:
1. Open the Vivaldi browser.
2. Click Vivaldi menu button > Help > Check for Updates.
3. When an update is available, click on Install Update in the bottom right corner to complete updating Vivaldi.

Upgrade to at least Opera 85.0.4341.28 by following steps:
1. Open the Opera browser.
2. Enter “opera://settings/about” in the address bar. The window that appears will automatically check for updates and show you the current version of Opera.
3. After Opera is updated, click the “RELAUNCH” option to restart Opera and complete the update.
 

REFERENCE:
1. https://www.informationsecurity.com.tw/article/article_detail.aspx?aid=9785
2. https://www.ithome.com.tw/news/150121
3. https://chromereleases.googleblog.com/2022/03/stable-channel-update-for-desktop_25.html
4. https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-1096
5. https://github.com/brave/brave-browser/issues/21889
6. https://vivaldi.com/blog/desktop/minor-update-five-5-1/
7. https://blogs.opera.com/desktop/changelog-for-85/

Back To Top