Google Chrome security update for CVE-2025-10585 and three other vulnerabilities
Security Patch Release
Summary
Hide ▲
Show ▼
Google released Chrome security updates for four vulnerabilities, including CVE-2025-10585, a type confusion zero-day exploited in the wild. The release matters because the flaw affects supported Windows, macOS, and Linux users and could enable arbitrary code execution or crashes. Google urged users to install the fixed builds as soon as possible.
Related Happenings
Microsoft security patch release for CVE-2026-41089
Security Patch Release
H score43
First: 13.05.2026 00:46
Last: 13.05.2026 00:46
Sources 1
About this happening:
Microsoft and other major software vendors shipped a heavy May 2026 patch cycle, with fixes spanning Windows, iOS, Firefox, Oracle products, and Chrome...
Microsoft security patch release for CVE-2026-41089
Security Patch ReleaseAbout this happening: Microsoft and other major software vendors shipped a heavy May 2026 patch cycle, with fixes spanning Windows, iOS, Firefox, Oracle products, and Chrome...
Linux kernel Dirty Frag patch release (CVE-2026-43284, CVE-2026-43500)
Security Patch Release
H score32
First: 11.05.2026 17:30
Last: 11.05.2026 17:30
Sources 1
About this happening:
Major Linux distributions are rolling out fixes for Dirty Frag, the Linux kernel patch release that covers CVE-2026-43284 and CVE-2026-43500. The update matter...
Linux kernel Dirty Frag patch release (CVE-2026-43284, CVE-2026-43500)
Security Patch ReleaseAbout this happening: Major Linux distributions are rolling out fixes for Dirty Frag, the Linux kernel patch release that covers CVE-2026-43284 and CVE-2026-43500. The update matter...
PackageKit 1.3.5 security update (CVE-2026-41651)
Security Patch Release
H score31
First: 24.04.2026 20:28
Last: 24.04.2026 20:28
Sources 1
About this happening:
PackageKit version 1.3.5 was released to fix CVE-2026-41651, closing a local privilege-escalation path that could let Linux users gain root permissions. The update...
PackageKit 1.3.5 security update (CVE-2026-41651)
Security Patch ReleaseAbout this happening: PackageKit version 1.3.5 was released to fix CVE-2026-41651, closing a local privilege-escalation path that could let Linux users gain root permissions. The update...
Google security patch release for CVE-2026-5858
Security Patch Release
H score16
First: 10.04.2026 13:44
Last: 10.04.2026 13:44
Sources 1
About this happening:
Google released the first stable Chrome 147 build, closing 60 vulnerabilities and raising the browser’s baseline security ahead of broader deployment. The patch bundle...
Google security patch release for CVE-2026-5858
Security Patch ReleaseAbout this happening: Google released the first stable Chrome 147 build, closing 60 vulnerabilities and raising the browser’s baseline security ahead of broader deployment. The patch bundle...
Google security patch release for CVE-2026-5281
Security Patch Release
H score40
First: 01.04.2026 13:25
Last: 01.04.2026 13:25
Sources 1
About this happening:
Google issued emergency Chrome updates to fix CVE-2026-5281, a use-after-free flaw in Dawn/WebGPU that was exploited in the wild, creating crash, corruptio...
Google security patch release for CVE-2026-5281
Security Patch ReleaseAbout this happening: Google issued emergency Chrome updates to fix CVE-2026-5281, a use-after-free flaw in Dawn/WebGPU that was exploited in the wild, creating crash, corruptio...
Timeline
-
18.09.2025 03:00 2 articles · 10mo ago
Google releases Chrome security updates and urges immediate updating
Mitigation Patch UpdateGoogle released Chrome security updates for four vulnerabilities, including CVE-2025-10585, and advised users of Windows, Apple macOS, and Linux builds to install Chrome 140.0.7339.185/.186 or 140.0.7339.185 and relaunch the browser.
Show sources
- Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions — thehackernews.com — 18.09.2025 08:49
- Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions — thehackernews.com — 18.09.2025 08:49
-
16.09.2025 03:00 1 articles · 10mo ago
TAG discovers and reports CVE-2025-10585
Technical Analysis UpdateGoogle's Threat Analysis Group (TAG) discovered and reported CVE-2025-10585, a type confusion flaw in the V8 JavaScript and WebAssembly engine, on September 16, 2025, and Google said an exploit for the Chrome zero-day existed in the wild.
Show sources
- Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions — thehackernews.com — 18.09.2025 08:49