Cybersecurity

šŸ”„ Chrome 143 Emergency Update: Google Patches 13 High-Risk Flaws That Could Let Hackers Take Over Your Device

December 14, 2025•2 min read

Google just pushed out Chrome 143, and this one isn’t your typical ā€œbug fixes and improvementsā€ update.

This release shuts down 13 security vulnerabilities — several of which allow attackers to execute arbitrary code on your system with almost no resistance.

If you’re reading this on Chrome and haven’t updated yet…
yeah, it’s time.
šŸ›‘

The update is now rolling out globally:

  • Linux: 143.0.7499.40

  • Windows/Mac: 143.0.7499.40 / .41

Chrome users everywhere are urged to update immediately.


🚨 What Google Fixed — And Why It Matters

Chrome 143 includes patches for four high-severity vulnerabilities, including:

1ļøāƒ£ A major Type Confusion flaw in the V8 JavaScript engine

This is the star of the show — and not in a good way.

Type confusion bugs let attackers trick Chrome into handling data incorrectly, creating a direct path to:

āœ” Remote code execution
āœ” Memory corruption
āœ” Full browser compromise

Google paid $11,000 for the report on this one — a sign of how dangerous it is.

2ļøāƒ£ Two ā€œUse-After-Freeā€ vulnerabilities

If Chrome tries to use memory after it’s been freed, attackers can hijack code execution.

These bugs commonly lead to:

  • Arbitrary code execution

  • Browser crashes

  • Potential sandbox escapes

Chrome patched both before exploitation was observed.

3ļøāƒ£ Multiple ā€œInappropriate Implementationā€ flaws

These appeared across several components, including:

  • DevTools

  • Downloads

  • WebRTC

Each one carried its own risk of execution or exploitation in specific workflows.


🧭 How to Update Chrome (Do This Now)

Chrome usually updates on its own, but don’t rely on that today.

  1. Open Chrome

  2. Click the three-dot menu

  3. Go to Help → About Google Chrome

  4. Chrome will auto-install the update

If it asks you to relaunch — do it.


šŸ” Behind the Scenes: Google’s Security Arsenal

To catch issues before attackers do, Google uses:

  • AddressSanitizer

  • MemorySanitizer

  • libFuzzer

  • Internal fuzzing infrastructure

Google also credits external researchers who reported additional flaws responsibly.

Anyone discovering security issues can report through the Chrome bug reporting system, and support is available in Chrome’s community channels.


Elliptic Systems’ Take

Chrome 143 is more than a maintenance update — it’s a critical security patch for one of the most targeted micro-ecosystems on the internet.

Threat actors love browser vulnerabilities because:

  • Browsers touch every part of a user’s digital life

  • Exploits often require zero user interaction

  • A single flaw can turn into full system compromise

Updating Chrome today is one of the simplest, fastest, highest-impact security actions any user can take.

Eric Stefanik

Eric Stefanik

Ai Consultant | Best-selling Author | Speaker | Innovator | Leading Cybersecurity Expert

LinkedIn logo icon
Instagram logo icon
Youtube logo icon
Back to Blog