PT-2026-47498 · Google · Chrome On Android

Published

2026-06-08

·

Updated

2026-06-10

·

CVE-2026-11672

CVSS v3.1

8.3

High

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome on Android versions prior to 149.0.7827.103
Description A heap buffer overflow exists in the GPU component. This issue allows a remote attacker who has already compromised the renderer process to potentially achieve a sandbox escape by using a specially crafted HTML page. A heap buffer overflow occurs when a program writes more data to a heap-allocated memory block than it can hold, potentially corrupting adjacent memory.
Recommendations Update to version 149.0.7827.103 or later.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2026-11672

Affected Products

Chrome On Android