PT-2026-2655 · Google+1 · Google Chrome+1

P1Nky4745

·

Published

2025-11-08

·

Updated

2026-04-17

·

CVE-2026-0899

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 144.0.7559.59
Description An out-of-bounds memory access issue exists in the V8 JavaScript engine. This flaw is caused by a function literal ID mismatch occurring when the parser fails to pre-allocate the other initializer scope while reparsing an initializer, leading to incorrect ID assignment. A remote attacker can exploit this by using a specially crafted HTML page to cause object corruption, which may lead to arbitrary code execution or a denial of service.
Recommendations Update Google Chrome to version 144.0.7559.59 or later.

Fix

RCE

Memory Corruption

Out of bounds Read

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-00514
CVE-2026-0899
OPENSUSE-SU-2026:10057-1
OPENSUSE-SU-2026:20054-1

Affected Products

Google Chrome
Red Os