PT-2026-41087 · Google · Google Chrome
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 148.0.7778.168
Description
An out-of-bounds write issue exists in the Fonts component, which occurs when the font rendering engine mishandles memory operations by writing data past an allocated memory buffer. This flaw allows a remote attacker to execute arbitrary code within the browser's sandbox by enticing a user to visit a specially crafted HTML page.
Recommendations
Update Google Chrome to version 148.0.7778.168 or later.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome