PT-2025-23563 · Google +3 · Google Chrome +4
Benoît Sevens
+1
·
Published
2025-05-27
·
Updated
2025-08-26
·
CVE-2025-5419
10
High
Base vector | Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
**Name of the Vulnerable Software and Affected Versions:**
Google Chrome versions prior to 137.0.7151.68
Microsoft Edge versions prior to 137.0.7151.68
Opera versions prior to 119.0.5497.70
Opera GX versions prior to 119.0.5497.68
**Description:**
A high-severity out-of-bounds read and write vulnerability exists in the V8 JavaScript and WebAssembly engine. This flaw allows a remote attacker to potentially exploit heap corruption via a crafted HTML page, potentially leading to arbitrary code execution. The vulnerability is actively exploited in the wild.
**Recommendations:**
Update Google Chrome to version 137.0.7151.68 or later.
Update Microsoft Edge to version 137.0.7151.68 or later.
Update Opera to version 119.0.5497.70 or later.
Update Opera GX to version 119.0.5497.68 or later.
Fix
RCE
Out of bounds Read
Memory Corruption
Related Identifiers
Affected Products
References · 188
- https://safe-surf.ru/specialists/bulletins-nkcki/721815 · Security Note
- https://bdu.fstec.ru/vul/2025-06341 · Security Note
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-5068 · Security Note
- https://bdu.fstec.ru/vul/2025-06391 · Security Note
- https://security-tracker.debian.org/tracker/source-package/chromium · Vendor Advisory
- https://safe-surf.ru/specialists/bulletins-nkcki/721818 · Security Note
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-5419 · Vendor Advisory
- https://osv.dev/vulnerability/CVE-2025-5419 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-5419 · Security Note
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-5419 · Security Note
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0811SE18 · Vendor Advisory
- https://security-tracker.debian.org/tracker/DSA-5935-1 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-5419%22, · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/721817 · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/722695 · Security Note