Business
CERT-In warns users of multiple bugs in Google Chrome, Zoho software
New Delhi, July 7
The Indian Computer Emergency Response Team (CERT-In), which comes under the IT Ministry, has warned users of multiple vulnerabilities in Google Chrome which could allow a remote attacker to execute arbitrary code and denial-of-service (DoS) conditions on the targeted system.
A remote attacker could exploit these vulnerabilities by sending specially crafted requests on the targeted system.
"Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary code and denial-of-service (DoS) conditions on the targeted system," said CERT-In the advisory late on Wednesday.
These vulnerabilities exist in Google Chrome due to 'Heap Buffer' overflow in 'WebRTC', 'Type Confusion in V8' and 'Use after Free' in Chrome OS Shell.
The vulnerability (CVE-2022-2294) is being exploited in the wild, said the cyber agency, adding that the users are advised to apply patches urgently.
CERT-In also advised users against a 'Remote Code Execution' vulnerability that has been reported in a Zoho Corporation software which could be exploited by an unauthenticated remote attacker to execute arbitrary code on the targeted system.
This vulnerability exists in 'Zoho ManageEngine ADAudit Plus' due to a 'misconfigured XML' parser that processes user-supplied input without sufficient validation.
"Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the targeted system," warned the cyber agency, advising the users to upgrade to the latest Zoho 'ManageEngine ADAudit Plus' security build update.
7 hours ago
President Droupadi Murmu begins her State-visit to Angola
7 hours ago
"Take from the BIG, BAD insurance companies, give it to the people," Trump urges Senate Republicans to abolish Obamacare
7 hours ago
The Third Eye: Trump’s strategy of maintaining America as economic superpower
7 hours ago
Impact felt across US as Republican-Democrat standoff on government funding drags on
7 hours ago
Telangana Cyber Security Bureau nabs 81 fraudsters in multi-state operation
7 hours ago
All are welcome in Sangh as sons of Bharat Mata: Mohan Bhagwat on Muslims in RSS
7 hours ago
Tejashwi celebrates 36th birthday during rally in Bihar's Karakat
7 hours ago
Wish for bright future for residents of Uttarakhand: Prez Murmu on state's 25th foundation day
7 hours ago
Goldman Sachs upgrades India to 'Overweight', sees Nifty at 29,000 by 2026
7 hours ago
Two killed as speeding car plunges into MP's Katni lake
7 hours ago
Pakistan forced to step back as conflict with Afghanistan proves too costly
7 hours ago
Tejas, Rafale sparkle at IAF flypast over Brahmaputra
7 hours ago
Devbhoomi Uttarakhand is heartbeat of India's spiritual life: PM Modi
