Executive brief
A vulnerability exists in Google Chrome for Windows that could allow a malicious website to escape the browser's security sandbox. This occurs if an attacker has already compromised the browser's rendering process, potentially allowing them to gain broader access to the underlying operating system. Users are protected by updating to the latest version of the browser.
Technical details
A use-after-free (UAF) vulnerability exists within the 'Device' component of Google Chrome for Windows. The flaw is triggered when the browser incorrectly manages memory for device-related objects, allowing a remote attacker to exploit the memory corruption. To successfully exploit this, an attacker must first compromise the renderer process (e.g., via a separate vulnerability). Once the renderer is compromised, the attacker can use a specially crafted HTML page to trigger the UAF and achieve a sandbox escape, potentially leading to arbitrary code execution on the host system. The issue is resolved in Chrome version 150.0.7871.47 and later.
Affected products
- Google Chrome prior to 150.0.7871.47
Timeline
- 2026-06-30: disclosed
- 2026-06-30: patched: Fixed in version 150.0.7871.47