Executive brief
A security vulnerability exists in the Google Chrome web browser on macOS that could allow a malicious website to break out of the browser's security sandbox. This component, CameraCapture, is responsible for managing camera access within the browser. If exploited, an attacker could potentially gain unauthorized access to the underlying operating system, compromising user data and system integrity.
Technical details
A use-after-free (UAF) vulnerability exists in the CameraCapture component of Google Chrome on macOS. The flaw is triggered when the browser incorrectly manages memory for camera-related objects, allowing an attacker to reference memory after it has been freed. By enticing a user to visit a specially crafted HTML page, a remote attacker can exploit this condition to execute arbitrary code and potentially escape the Chromium sandbox. This vulnerability affects versions prior to 149.0.7827.103 and has been patched in the latest stable channel update.
Affected products
- Google Chrome prior to 149.0.7827.103
Timeline
- 2026-05-15: disclosed: Reported to Chrome by Google researchers
- 2026-06-08: patched: Fixed in Stable Channel Update 149.0.7827.103
- 2026-06-09: advisory: NVD publication date