PT-2026-41058 · Google · Google Chrome

Published

2026-05-12

·

Updated

2026-05-18

·

CVE-2026-8529

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 148.0.7778.168
Description A heap buffer overflow in Codecs allows a remote attacker to execute arbitrary code inside a sandbox by using a crafted video file. A heap buffer overflow occurs when a program writes more data to a buffer allocated on the heap than it can hold, potentially leading to memory corruption.
Recommendations Update to version 148.0.7778.168 or later.

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-8529
ECHO-E759-82C3-DFDB
OPENSUSE-SU-2026:10786-1

Affected Products

Google Chrome