(Figure) Chrome 86.0.4240.183 Stable Release: Fix two high-risk vulnerabilities

Over the past few weeks, Google has been actively fixing multiple security vulnerabilities that exist in Chrome. A newly discovered vulnerability exists in Chrome’s V8 JavaScript engine, which can launch remote code execution (RCE) attacks. A vulnerability that exists in Android Chrome can escape from the sandbox.

(Figure) Chrome 86.0.4240.183 Stable Release: Fix two high-risk vulnerabilities

Experts from Google’s Threat Analysis Group (TAG) and Project Zero team discovered the zero-day vulnerability CVE-2020-16009 last week. On Monday, Google fixed the vulnerability by releasing Chrome 86.0.4240.183 updates for Windows, macOS and Linux.

The patch notes that no details about the security vulnerability were disclosed other than that it was related to an “inappropriate implementation” in the V8 JavaScript rendering engine. It also mentioned that this weakness had been actively exploited. “Google acknowledges that hackers have exploited the CVE-2020-16009 vulnerability to launch an attack,” the patch note reads.

Ben Hawkes, head of technology at Google Project Zero, said on Twitter that the flaw allowed an attacker to carry out an RCE (remote code execution) attack. Hawkes also referred to a key update to chrome’s Android version, fixing the “sandbox escape” (CVE-2020-16010) on Android phones. The 86.0.4240.183 update also includes several other high-priority security patches. Google recommends updating the desktop and Android Chrome browsers immediately.

Download address: https://www.google.com/intl/zh-CN/chrome/

Windows x64 version

Latest version: 86.0.4240.183

File size: 64.61 MB

Updated: 1 day ago

SHA1:5378F8D503F22BB86EF90B417A8828C901558E6E

SHA256:5751E1F131255EC4710DB50551D39D9E1B27E56CD46160057C7D68545E0B576E1

http://dl.google.com/release2/chrome/ANgMaZuTFP5u7kDbYxrbLJ4_86.0.4240.183/86.0.4240.183_chrome_installer.exe

https://dl.google.com/release2/chrome/ANgMaZuTFP5u7kDbYxrbLJ4_86.0.4240.183/86.0.4240.183_chrome_installer.exe

http://www.google.com/dl/release2/chrome/ANgMaZuTFP5u7kDbYxrbLJ4_86.0.4240.183/86.0.4240.183_chrome_installer.exe

https://www.google.com/dl/release2/chrome/ANgMaZuTFP5u7kDbYxrbLJ4_86.0.4240.183/86.0.4240.183_chrome_installer.exe

The version of Windows

Latest version: 86.0.4240.183

File size: 62.49 MB

Updated: 1 day ago

SHA1:6C01C1C5329A394C291E6FDEC44DB5F2DD2126E0

SHA256: FBD0AFFCC72C587FB376999C314E163306CE4550FF8ACA1F846B363BACC5539D

http://dl.google.com/release2/chrome/AJxCXMiysJH2Mnem8ys97ls_86.0.4240.183/86.0.4240.183_chrome_installer.exe

https://dl.google.com/release2/chrome/AJxCXMiysJH2Mnem8ys97ls_86.0.4240.183/86.0.4240.183_chrome_installer.exe

http://www.google.com/dl/release2/chrome/AJxCXMiysJH2Mnem8ys97ls_86.0.4240.183/86.0.4240.183_chrome_installer.exe

https://www.google.com/dl/release2/chrome/AJxCXMiysJH2Mnem8ys97ls_86.0.4240.183/86.0.4240.183_chrome_installer.exe