Executive brief
Google Chrome is a widely used web browser. A critical vulnerability in its Aura windowing component could allow a remote attacker to bypass the browser's security sandbox. If exploited, this could allow an attacker to gain full control over the underlying Windows operating system, potentially leading to data theft or the installation of malicious software.
Technical details
A use-after-free (UAF) vulnerability exists in the Aura windowing engine within Google Chrome for Windows. The flaw is triggered when the browser improperly manages memory during the lifecycle of objects within the Aura component. An attacker who has already compromised the renderer process can exploit this vulnerability via a specially crafted HTML page to achieve a sandbox escape. This allows for arbitrary code execution with the privileges of the browser process on the host operating system. The issue is resolved in Google Chrome version 149.0.7827.103.
Affected products
- Google Chrome prior to 149.0.7827.103
Timeline
- 2026-05-26: disclosed: Reported to Google by internal researchers
- 2026-06-08: patched: Fixed in Stable Channel Update 149.0.7827.103
- 2026-06-09: advisory: NVD publication date