{"id":27444,"date":"2025-06-04T18:39:08","date_gmt":"2025-06-04T15:39:08","guid":{"rendered":"https:\/\/kibrisayna.com\/index.php\/2025\/06\/04\/google-chromeda-acil-guvenlik-guncellemesi-hackerlarin-kullandigi-kritik-acik-son-dakika-teknoloji-haberleri\/"},"modified":"2025-06-04T18:39:08","modified_gmt":"2025-06-04T15:39:08","slug":"google-chromeda-acil-guvenlik-guncellemesi-hackerlarin-kullandigi-kritik-acik-son-dakika-teknoloji-haberleri","status":"publish","type":"post","link":"https:\/\/kibrisayna.com\/index.php\/2025\/06\/04\/google-chromeda-acil-guvenlik-guncellemesi-hackerlarin-kullandigi-kritik-acik-son-dakika-teknoloji-haberleri\/","title":{"rendered":"Google Chrome&#8217;da acil g\u00fcvenlik g\u00fcncellemesi: Hackerlar\u0131n kulland\u0131\u011f\u0131 kritik a\u00e7\u0131k &#8211; Son Dakika Teknoloji Haberleri"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><a href=\"https:\/\/www.ntv.com.tr\/google\" target=\"_blank\" rel=\"tag noopener\">Google<\/a>, <a href=\"https:\/\/www.ntv.com.tr\/chrome\" target=\"_blank\" rel=\"tag noopener\">Chrome<\/a> taray\u0131c\u0131s\u0131nda tespit edilen \u00fc\u00e7 g\u00fcvenlik a\u00e7\u0131\u011f\u0131n\u0131 d\u00fczeltmek i\u00e7in pazartesi g\u00fcn\u00fc plan d\u0131\u015f\u0131 (out-of-band) bir g\u00fcncelleme yay\u0131nlad\u0131. Bu a\u00e7\u0131klar\u0131n aras\u0131nda, halihaz\u0131rda siber sald\u0131rganlar taraf\u0131ndan aktif olarak istismar edildi\u011fi s\u00f6ylenen kritik bir zafiyet de bulunuyor.<\/p>\n<p><strong>TEHL\u0130KEL\u0130 A\u00c7IK: CVE-2025-5419<\/strong><\/p>\n<p>CVE-2025-5419 koduyla takip edilen a\u00e7\u0131k, 8.8 CVSS skoru ile y\u00fcksek \u00f6nem derecesine sahip. Sorun, Chrome\u2019un V8 JavaScript ve WebAssembly motorunda yer alan &#8220;bellek s\u0131n\u0131rlar\u0131 d\u0131\u015f\u0131nda okuma ve yazma&#8221; (out-of-bounds read\/write) hatas\u0131ndan kaynaklan\u0131yor.<\/p>\n<p>ABD Ulusal G\u00fcvenlik A\u00e7\u0131klar\u0131 Veritaban\u0131\u2019nda yay\u0131mlanan a\u00e7\u0131klamada, bu a\u00e7\u0131\u011f\u0131n \u201c\u00f6zel olarak haz\u0131rlanm\u0131\u015f bir HTML sayfas\u0131 arac\u0131l\u0131\u011f\u0131yla bellek bozulmas\u0131na neden olarak uzaktan sald\u0131rganlar\u0131n sistemi istismar etmesine\u201d imkan tan\u0131d\u0131\u011f\u0131 ifade edildi.<\/p>\n<p><strong>ANAL\u0130Z EK\u0130B\u0130 TESP\u0130T ETT\u0130<\/strong><\/p>\n<p>The Hacker News\u2019e g\u00f6re a\u00e7\u0131k, Google Tehdit Analiz Grubu\u2019ndan Cl\u00e9ment Lecigne ve Beno\u00eet Sevens taraf\u0131ndan 27 May\u0131s 2025&#8217;te ke\u015ffedildi. Google, bunun ard\u0131ndan yap\u0131land\u0131rma g\u00fcncellemesi yay\u0131nlayarak a\u00e7\u0131\u011f\u0131 kapatt\u0131\u011f\u0131n\u0131 duyurdu.<\/p>\n<p>\u015eirket, sald\u0131r\u0131n\u0131n ayr\u0131nt\u0131lar\u0131 ya da arkas\u0131ndaki tehdit akt\u00f6rleri hakk\u0131nda fazla bilgi vermedi. Bu, genellikle g\u00fcvenlik yamalar\u0131 geni\u015f \u00e7apta kullan\u0131c\u0131lar taraf\u0131ndan uygulanmadan \u00f6nce k\u00f6t\u00fc niyetli ki\u015filerin a\u00e7\u0131\u011f\u0131 daha fazla istismar etmesini \u00f6nlemek i\u00e7in yap\u0131lan bir uygulama.<\/p>\n<p>Google, yapt\u0131\u011f\u0131 a\u00e7\u0131klamada \u015fu ifadeye yer verdi:<\/p>\n<p>\u201cGoogle, CVE-2025-5419 i\u00e7in bir istismar\u0131n dola\u015f\u0131mda oldu\u011funun fark\u0131ndad\u0131r.\u201d<\/p>\n<p><strong>BU YILIN \u0130K\u0130NC\u0130 A\u00c7I\u011eI<\/strong><\/p>\n<p>CVE-2025-5419, Google&#8217;\u0131n bu y\u0131l kapatt\u0131\u011f\u0131 ikinci s\u0131f\u0131r g\u00fcn (zero-day) a\u00e7\u0131\u011f\u0131 oldu. \u0130lk a\u00e7\u0131k, CVE-2025-2783 koduyla biliniyor ve Rusya\u2019daki kurulu\u015flara y\u00f6nelik sald\u0131r\u0131larda Kaspersky taraf\u0131ndan tespit edilmi\u015fti.<\/p>\n<p>Bir yaz\u0131l\u0131mda, donan\u0131mda ya da sistemde bulunan hen\u00fcz geli\u015ftirici taraf\u0131ndan fark edilmemi\u015f veya fark edilip hen\u00fcz d\u00fczeltilmemi\u015f bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131na \u201cs\u0131f\u0131r g\u00fcn\u201d ad\u0131 veriliyor.<\/p>\n<p><strong>G\u00dcNCELLEME UYARISI<\/strong><\/p>\n<p>Kullan\u0131c\u0131lar\u0131n, g\u00fcvenlik risklerinden korunmak i\u00e7in Chrome\u2019un a\u015fa\u011f\u0131daki s\u00fcr\u00fcmlerine g\u00fcncelleme yapmalar\u0131 \u00f6neriliyor:<\/p>\n<p>Windows ve macOS: 137.0.7151.68 veya 137.0.7151.69<\/p>\n<p>Linux: 137.0.7151.68<\/p>\n<p>Ayr\u0131ca Microsoft Edge, Brave, Opera ve Vivaldi gibi Chromium tabanl\u0131 taray\u0131c\u0131lar kullananlar\u0131n da benzer g\u00fcvenlik yamalar\u0131 yay\u0131Nland\u0131\u011f\u0131nda derhal g\u00fcncelleme yapmalar\u0131 tavsiye ediliyor.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.ntv.com.tr\/teknoloji\/google-chromeda-acil-guvenlik-guncellemesi-hackerlarin-kullandigi-kritik-acik,LdkQoRA0_0iyql8khCsEOQ\"><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Google, Chrome taray\u0131c\u0131s\u0131nda tespit edilen \u00fc\u00e7 g\u00fcvenlik a\u00e7\u0131\u011f\u0131n\u0131 d\u00fczeltmek i\u00e7in pazartesi g\u00fcn\u00fc plan d\u0131\u015f\u0131 (out-of-band) bir g\u00fcncelleme yay\u0131nlad\u0131. Bu a\u00e7\u0131klar\u0131n aras\u0131nda, halihaz\u0131rda siber sald\u0131rganlar taraf\u0131ndan aktif olarak istismar edildi\u011fi s\u00f6ylenen kritik bir zafiyet de bulunuyor. TEHL\u0130KEL\u0130 A\u00c7IK: CVE-2025-5419 CVE-2025-5419 koduyla takip edilen a\u00e7\u0131k, 8.8 CVSS skoru ile y\u00fcksek \u00f6nem derecesine sahip. Sorun, Chrome\u2019un V8 JavaScript [&hellip;]<\/p>\n","protected":false},"author":908,"featured_media":24650,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"jetpack_seo_schema_type":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[12],"tags":[],"class_list":["post-27444","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-teknoloji"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"https:\/\/kibrisayna.com\/wp-content\/uploads\/2025\/05\/IRyzxXlk20uQKJTtALTCeQ.jpg","_links":{"self":[{"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/posts\/27444","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/users\/908"}],"replies":[{"embeddable":true,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/comments?post=27444"}],"version-history":[{"count":0,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/posts\/27444\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/media\/24650"}],"wp:attachment":[{"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/media?parent=27444"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/categories?post=27444"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kibrisayna.com\/index.php\/wp-json\/wp\/v2\/tags?post=27444"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}