PT-2026-2655 · Google+1 · Google Chrome+1
P1Nky4745
·
Published
2025-11-08
·
Updated
2026-04-17
·
CVE-2026-0899
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 144.0.7559.59
Description
An out-of-bounds memory access issue exists in the V8 JavaScript engine. This flaw is caused by a function literal ID mismatch occurring when the parser fails to pre-allocate the other initializer scope while reparsing an initializer, leading to incorrect ID assignment. A remote attacker can exploit this by using a specially crafted HTML page to cause object corruption, which may lead to arbitrary code execution or a denial of service.
Recommendations
Update Google Chrome to version 144.0.7559.59 or later.
Fix
RCE
Memory Corruption
Out of bounds Read
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Google Chrome
Red Os