Executive brief
Google Chrome for iOS is a popular mobile web browser. A security vulnerability was identified that could allow a malicious website to bypass the browser's security sandbox. If exploited, an attacker who has already gained control over the browser's rendering process could potentially gain broader access to the underlying mobile operating system or user data.
Technical details
A use-after-free (UAF) vulnerability exists in the 'Core' component of Google Chrome for iOS. The flaw is triggered when the browser incorrectly manages memory during the processing of specially crafted HTML content. An attacker who has already achieved code execution within the sandboxed renderer process can leverage this UAF to escape the sandbox and execute arbitrary code with higher privileges on the iOS system. The vulnerability is addressed in version 149.0.7827.53.
Affected products
- Google Chrome for iOS prior to 149.0.7827.53
Timeline
- 2026-03-30: disclosed: Reported by Google internal researchers
- 2026-06-02: patched: Fixed in version 149.0.7827.53
- 2026-06-04: advisory