PT-2026-38150 · Google · Google Chrome

Published

2026-03-26

·

Updated

2026-05-14

·

CVE-2026-7957

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome on Mac and iOS versions prior to 148.0.7778.96
Description An out-of-bounds write issue exists in the Media component. This allows a remote attacker who has already compromised the renderer process to execute arbitrary code within a sandbox by using a specially crafted HTML page. An out-of-bounds write occurs when a program writes data past the end of an intended buffer, which can lead to memory corruption.
Recommendations Update Google Chrome on Mac and iOS to version 148.0.7778.96 or later.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2026-07050
CVE-2026-7957
ECHO-7065-F0B1-8DF3
OPENSUSE-SU-2026:10778-1

Affected Products

Google Chrome