PT-2026-41087 · Google · Google Chrome

·

CVE-2026-8558

·

Published

2026-05-12

·

Updated

2026-05-16

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 148.0.7778.168
Description An out-of-bounds write issue exists in the Fonts component, which occurs when the font rendering engine mishandles memory operations by writing data past an allocated memory buffer. This flaw allows a remote attacker to execute arbitrary code within the browser's sandbox by enticing a user to visit a specially crafted HTML page.
Recommendations Update Google Chrome to version 148.0.7778.168 or later.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-8558
ECHO-4C57-D2D3-4FDF
OPENSUSE-SU-2026:10786-1

Affected Products

Google Chrome