Executive brief
Google Chrome's Skia graphics library contains a validation flaw that allows attackers who have already compromised the browser's rendering process to read sensitive memory outside the browser's security sandbox. This could lead to exposure of sensitive data that should be protected by the browser's isolation mechanisms, though exploitation requires the attacker to first compromise the renderer process itself.
Technical details
This vulnerability is an improper state validation flaw in Skia, Google Chrome's graphics rendering engine. The issue allows an attacker who has already compromised the renderer process to bypass the browser's sandbox restrictions and read memory outside the intended boundaries via a crafted HTML page. The vulnerability requires prior compromise of the renderer process, making it a secondary exploit vector in a multi-stage attack. Google patched this issue in Chrome version 153.0.8010.47 or later. The Chromium project assigned it a "High" severity rating.
Affected products
- Google Chrome prior to 153.0.8010.47
Timeline
- 2026-09-15: disclosed
- 2026-09-15: patched: Fixed in Chrome 153.0.8010.47