PT-2026-35852 · Google · Chrome For Android
Published
2026-04-02
·
Updated
2026-05-05
·
CVE-2026-7352
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Google Chrome on Android versions prior to 147.0.7727.138
Description
A use after free issue exists in the Media component. This occurs when a program continues to use a pointer after it has been freed, which can lead to memory corruption. A remote attacker who has compromised the renderer process could potentially perform a sandbox escape via a crafted HTML page to elevate privileges.
Recommendations
Update to version 147.0.7727.138 or later.
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Chrome For Android