PT-2025-7506 · Google+2 · Google Chrome+2

Gf

+1

·

Published

2025-02-18

·

Updated

2025-09-06

·

CVE-2025-1426

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome on Android versions prior to 133.0.6943.126
Description A heap buffer overflow in the GPU of Google Chrome on Android allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. The severity of this issue is rated as High by Chromium.
Recommendations For Google Chrome on Android versions prior to 133.0.6943.126, update to version 133.0.6943.126 or later to resolve the issue. As a temporary workaround, consider avoiding the use of crafted HTML pages that could trigger the heap buffer overflow until a patch is applied.

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-3189
ALT-PU-2025-4366
BDU:2025-04016
CVE-2025-1426
DSA-5869-1
MGASA-2025-0091
OPENSUSE-SU-2025:0070-1
OPENSUSE-SU-2025:14829-1
OPENSUSE-SU-2025:15531-1

Affected Products

Alt Linux
Debian
Google Chrome