PT-2025-33889 · Google+4 · V8+5
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 139.0.7258.138
Description
An out-of-bounds write issue exists in the V8 JavaScript engine. This flaw allows a remote attacker to potentially exploit heap corruption—a condition where memory allocated in the heap is overwritten beyond its intended boundary—via a specially crafted HTML page. Successful exploitation could lead to arbitrary code execution, denial of service, or information disclosure.
Recommendations
Update Google Chrome to version 139.0.7258.138 or higher.
Fix
DoS
RCE
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Debian
Google Chrome
Red Os
V8