PT-2026-33136 · Google · Skia+1
Published
2026-03-24
·
Updated
2026-05-27
·
CVE-2026-6298
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.101
Description
A heap buffer overflow in Skia allows a remote attacker to obtain potentially sensitive information from process memory by using a crafted HTML page. A heap buffer overflow occurs when a program writes more data to a buffer allocated on the heap than it can hold, potentially leading to memory corruption or information disclosure.
Recommendations
Update to version 147.0.7727.101 or later.
Fix
DoS
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome
Skia