PT-2026-33144 · Google · Pdfium+1
Published
2026-03-27
·
Updated
2026-04-18
·
CVE-2026-6306
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.101
Description
A heap buffer overflow in PDFium allows a remote attacker to execute arbitrary code inside a sandbox by using a crafted PDF file. A heap buffer overflow occurs when a program writes more data to a buffer allocated on the heap than it can hold, potentially overwriting adjacent memory.
Recommendations
Update to version 147.0.7727.101 or later.
Fix
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome
Pdfium