Executive brief
A vulnerability in Google Chrome for Android could allow a malicious website to bypass security protections. By tricking a user into visiting a specially crafted webpage, an attacker who has already gained limited control over the browser's rendering process could escape the 'sandbox'—a security layer designed to keep web content isolated from the rest of the device. This could lead to unauthorized access to sensitive data or further compromise of the mobile device.
Technical details
A use-after-free (UAF) vulnerability exists in the SurfaceCapture component of Google Chrome for Android. The flaw is triggered when the browser incorrectly manages memory during the capture of screen surfaces. A remote attacker who has already compromised the renderer process can exploit this issue by enticing a user to visit a malicious HTML page. Successful exploitation allows the attacker to bypass the Chrome sandbox, potentially leading to arbitrary code execution with the privileges of the browser app on the Android operating system. The issue is addressed in version 149.0.7827.53.
Affected products
- Google Chrome prior to 149.0.7827.53
Timeline
- 2026-06-02: patched: Chrome 149.0.7827.53 released to stable channel
- 2026-06-04: disclosed: NVD publication date