Executive brief
A security vulnerability exists in Google Chrome's Graphite component, which is responsible for rendering graphics. An attacker could use a specially crafted webpage to bypass the browser's security sandbox if they have already gained partial control over the browser's rendering process. This could allow an attacker to gain unauthorized access to the underlying operating system and sensitive user data.
Technical details
A use-after-free (UAF) vulnerability exists in the Graphite rendering component of Google Chrome. The flaw can be triggered by a remote attacker who has already compromised the renderer process. By enticing a user to visit a specially crafted HTML page, the attacker can exploit the memory corruption to achieve a sandbox escape, potentially leading to full system compromise. The vulnerability was addressed in Chrome version 147.0.7727.101 for Linux and 147.0.7727.101/102 for Windows and Mac.
Affected products
- Google Chrome prior to 147.0.7727.101
Timeline
- 2026-03-26: other: Reported to Google by internal researchers
- 2026-04-15: advisory: Vendor advisory published by Google Chrome team
- 2026-04-15: patched: Fixed in version 147.0.7727.101/102