Google just issued urgent security fix for Chrome — what to do now

and image of the Google Chrome logo on a laptop
(Image credit: Shutterstock)

Update: Patch and restart Google Chrome right now!

Google has pushed out a patch for Chrome to plug a zero-day vulnerability that’s been exploited by hackers out in the wild. You’ll want to make sure you have this update as soon as possible. 

As detailed in the latest Google security advisory, the Chrome 103.0.5060.114 for Windows and Mac (103.0.5060.71 for Android) update patches the flaw tracked as CVE-2022-2294. And the patch is rolling out now. 

Google has kept the lid on the details of the exploit so as to protect users that have yet to get the Chrome patch. But it’s a high severity flaw that’s a heap-based buffer overflow weakness in the browser’s WebRTC component, as reported by Jan Vojtesek from the Avast Threat Intelligence team on July 1. 

In plain English, this type of flaw allows for hackers to exploit a buffer overflow, whereby a program writes data beyond the boundary of allocated memory, and can be used to crash programs and execute arbitrary code by bypassing security measures. 

“Besides important user data, heap-based overflows can be used to overwrite function pointers that may be living in memory, pointing it to the attacker’s code,” the listing for heap-based buffer overflow vulnerabilities explains. “Even in applications that do not explicitly use function pointers, the run-time will usually leave many in memory.”

While Google hasn't detailed how vulnerability has been used by hackers, you’ll want to make sure your Chrome browser is protected against it to keep opportunistic cyber criminals at bay. 

This is rather easy to do; in Windows, simply click on the three vertical dots in the top right-hand side of the Chrome browser to access the browser’s main menu. From there, head to the Settings option, which is towards the bottom of the list, and click on it

Under settings, navigate to the Help section, then click on the “About Google Chrome'' option for on the left-hand side. This will then trigger Chrome to check if you are running the latest version of the browser. If you aren't, don’t worry as Chrome will automatically begin updating to the latest version, downloading and installing it for you. 

On Mac, simply click on the Chrome menu in the top left of your screen, then click on About Google Chrome and you'll be taken straight to the screen which checks for updates.

After this is done on Windows or Mac, you’ll need to relaunch Chrome, which you'll be prompted to do, and the update will be applied.

Make sure to check that Chrome is up to date, as even if you’re not the target of a hacker, getting the latest updates can protect you from security holes and make for a more stable browsing experience, as well as introduce new features from time to time

TOPICS
Roland Moore-Colyer

Roland Moore-Colyer a Managing Editor at Tom’s Guide with a focus on news, features and opinion articles. He often writes about gaming, phones, laptops and other bits of hardware; he’s also got an interest in cars. When not at his desk Roland can be found wandering around London, often with a look of curiosity on his face. 

Read more
Google Pixel 9 held in the hand.
Google just fixed a zero-day kernel flaw used by hackers and 47 other vulnerabilities — update your Android phone right now
Apple iPhone 16 Plus Review.
Apple just released an emergency security update for a flaw used in an ‘extremely sophisticated attack’ — update your devices right now
iPhone 16 Pro shown held in hand
Apple just patched its first zero-day flaw of the year — update your iPhone and Mac right now
Windows
240 million Windows 10 users are vulnerable to six different hacker exploits — protect yourself now
and image of the Google Chrome logo on a laptop
Billions of Chrome users at risk from new browser-hijacking Syncjacking attack — how to stay safe
Android 12
Google March Android Security Update fixes two high severity vulnerabilities — update now
Latest in Online Security
A magnifying glass on top of the Steam logo in a web browser
Valve just pulled a malicious game demo spreading info-stealing malware from Steam
A man filing his taxes electronically on a laptop
AI-powered tax scams are here - how to stay safe from deepfakes, phishing and more this tax season
MacBook Pro 2023
New Mac attack is tricking users into thinking their computer is locked — how to stay safe
Hacker using a stolen social security card
Your Social Security number is a literal gold mine for scammers and identity thieves — here’s how to keep it safe
An open lock depicting a data breach
Half a million teachers hit in major data breach with SSNs, financial data and more exposed — what to do now
Green skull on smartphone screen.
Malicious Android apps with 60 million installs bombarding phones with ads and phishing attacks — how to stay safe
Latest in News
Ray-Ban Meta Smart Glasses
Samsung’s smart glasses could arrive before the end of the year — what we know
Galaxy S25 Ultra Now brief
Samsung’s Personal Data Engine is a big addition to the Galaxy S25 — here’s why
Apple Watch Series 10
Future Apple Watch models could get a surprising new feature — what we know
NYTimes Connections
NYT Connections today hints and answers — Monday, March 24 (#652)
NYT Strands on a cellphone
NYT Strands today — hints, spangram and answers for game #386 (Monday, March 24 2025)
iPhone 16 Pro vs iPhone 16 Pro Max in hand showing displays
Forget iPhone 17 — iPhone 18 could get this huge upgrade