Executive brief
Google Chrome for iOS contains a use-after-free vulnerability in its Sharing feature that allows remote attackers to execute arbitrary code outside the browser's sandbox. An attacker can exploit this by sending specially crafted network traffic, potentially gaining full control of the device. This vulnerability affects all iOS users running Chrome versions prior to 153.0.8010.36.
Technical details
A use-after-free vulnerability exists in the Sharing component of Google Chrome on iOS versions prior to 153.0.8010.36. The vulnerability allows an attacker to send crafted network traffic that triggers a use-after-free condition, enabling arbitrary code execution outside the sandbox boundary. The attack requires network access and no user authentication, though it may require user interaction with a malicious web page or link. Successful exploitation grants an attacker arbitrary code execution with the privileges of the Chrome process, potentially leading to full device compromise. The fix is available in Chrome version 153.0.8010.36 and later.
Affected products
- Google Chrome prior to 153.0.8010.36 on iOS
Timeline
- 2026-09-09: disclosed: CVE-2026-87609 publicly disclosed
- 2026-09-08: patched: Fixed in Chrome 153.0.8010.36