

Skia provides Chrome with APIs for rendering graphics, text, shapes, images, and animations, making it a crucial component of the browser's rendering pipeline. A relaunch of the application is necessary to complete the update.ĬVE-2023-2136 is a high-severity integer overflow vulnerability in Skia, a Google-owned open-source multi-platform 2D graphics library written in C++. Otherwise, updates will be installed automatically the next time the browser starts, without requiring user intervention. To update Chrome manually, users can head to the settings menu and select Help → About Google Chrome.

The Linux version will be released "soon," according to Google. The company stated in a security bulletin, "Google is aware that an exploit for CVE-2023-2136 exists in the wild." The new version of Chrome, 1.137, fixes a total of eight vulnerabilities and is currently available for Windows and Mac users. Google has released a security update for its Chrome web browser to address the second zero-day vulnerability discovered to be exploited in attacks this year.
