PT-2026-29458 · Google+1 · Google Chrome+1

Heapracer

·

Published

2026-03-11

·

Updated

2026-06-07

·

CVE-2026-5280

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 146.0.7680.178
Description A use after free issue exists in the WebCodecs component. This occurs when a program continues to use a pointer after it has been freed, which can lead to memory corruption. A remote attacker can exploit this by using a crafted HTML page to execute arbitrary code inside a sandbox or cause a denial of service.
Recommendations Update to version 146.0.7680.178 or later.

Fix

DoS

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2026-06716
CVE-2026-5280
OPENSUSE-SU-2026:10487-1
OPENSUSE-SU-2026:20460-1

Affected Products

Google Chrome
Red Os