Executive brief
A security vulnerability exists in Google Chrome for Linux that could allow a malicious website to compromise a user's computer. By tricking a user into visiting a specially crafted webpage, an attacker could potentially gain unauthorized access to data or cause the browser to crash. This issue affects the Ozone component, which handles how the browser interacts with the operating system's display system.
Technical details
A use-after-free (UAF) vulnerability exists in the Ozone abstraction layer of Google Chrome on Linux. The flaw is triggered when the browser incorrectly manages memory lifecycle for objects within the Ozone component, which is responsible for input and display hardware abstraction. A remote attacker can exploit this by enticing a user to visit a maliciously crafted HTML page, leading to heap corruption. This could potentially allow for arbitrary code execution within the context of the browser process. The issue is fixed in version 149.0.7827.103 and later.
Affected products
- Google Chrome Prior to 149.0.7827.103
Timeline
- 2026-05-27: disclosed: Reported to the Chromium project by Google researchers.
- 2026-06-08: patched: Fixed in Stable Channel Update 149.0.7827.103.
- 2026-06-09: advisory: NVD publication date.