Executive brief
Google Chrome for Linux is vulnerable to a security flaw that could allow an attacker to break out of the browser's protective sandbox. By tricking a user into visiting a specially crafted website, an attacker who has already compromised the browser's rendering engine could gain broader access to the underlying operating system. This could lead to unauthorized access to local files, data theft, or further system compromise.
Technical details
A vulnerability exists in the Linux Toolkit Theming component of Google Chrome due to improper input validation (CWE-20). The flaw allows a remote attacker to achieve a sandbox escape if they have already successfully compromised the renderer process. The attack vector requires the victim to interact with a malicious HTML page. Successful exploitation grants the attacker the ability to execute code outside of the restricted browser environment on Linux systems. Google has addressed this issue in Chrome version 150.0.7871.125.
Affected products
- Google Chrome Prior to 150.0.7871.125
Timeline
- 2026-06-03: disclosed: Reported to Google by internal researchers
- 2026-07-14: patched: Fixed in stable channel update 150.0.7871.125
- 2026-07-14: advisory: NVD publication date