Impact
A use‑after‑free bug in Chrome’s USB handling code on Windows allows a remote attacker to trigger a potential sandbox escape by delivering a specially crafted HTML page. The flaw causes Chrome to access memory that has been freed, undermining the browser’s isolation boundary. The vulnerability is a classic use‑after‑free (CWE‑416).
Affected Systems
The issue affects all Windows users running Google Chrome older than version 149.0.7827.53 on the stable channel. Any installation of the affected version on Windows is potentially exposed.
Risk and Exploitability
Chromium assigns the vulnerability a Medium severity. EPSS data is not available and the flaw is not listed in the CISA KEV catalog. The attack vector is remote, requiring the victim to load a specially crafted HTML page, which may originate from a USB device. Successful exploitation could result in a sandbox escape, allowing the attacker to run code outside Chrome’s sandbox.
OpenCVE Enrichment