Executive brief
A security vulnerability in Google Chrome's extension system could allow a malicious browser extension to corrupt the browser's memory. To exploit this, an attacker must first trick a user into installing a specifically crafted malicious extension. If successful, this could lead to the attacker gaining unauthorized control over the browser or accessing sensitive user data.
Technical details
A use-after-free (UAF) vulnerability exists in the Extensions component of Google Chrome prior to version 150.0.7871.115. The flaw is triggered when the browser improperly manages memory lifecycles during extension operations, allowing a crafted Chrome Extension to reference memory after it has been freed. This results in heap corruption, which an attacker can leverage for arbitrary code execution. Exploitation requires the user to install a malicious extension, making the attack vector local with user interaction. Google has addressed this issue in the stable channel update 150.0.7871.115.
Affected products
- Google Chrome Prior to 150.0.7871.115
Timeline
- 2026-05-27: disclosed: Reported to Chromium project
- 2026-07-08: patched: Fixed in version 150.0.7871.115
- 2026-07-08: advisory: Public advisory published