Executive brief
Google Chrome for iOS is a popular mobile web browser. A vulnerability exists that could allow a malicious website to cause the application to crash or potentially execute unauthorized code if a user performs specific touch gestures on a specially crafted webpage. This could lead to a compromise of the browser's security or a disruption of service for the user.
Technical details
A use-after-free (UAF) vulnerability exists in the iOS version of Google Chrome (CWE-416). The flaw is triggered when a user interacts with a crafted HTML page using specific UI gestures, leading to potential heap corruption. An attacker could leverage this to cause a denial-of-service (browser crash) or potentially achieve arbitrary code execution within the context of the browser process. The vulnerability is mitigated by the requirement for specific user interaction (UI gestures). The issue was addressed in version 150.0.7871.47.
Affected products
- Google Chrome for iOS prior to 150.0.7871.47
Timeline
- 2026-06-30: disclosed
- 2026-06-30: advisory