Impact
A use‑after‑free flaw exists in the Media component of Google Chrome on Linux and ChromeOS versions earlier than 149.0.7827.53. When a remote attacker already controls the renderer process, a crafted HTML page can trigger the freed memory, allowing arbitrary code execution inside the renderer sandbox. This is a memory‑safety issue (CWE‑416 and CWE‑825) that does not immediately provide full system access but enables code execution within the sandboxed environment.
Affected Systems
All installations of Google Chrome on Linux or ChromeOS running a version prior to 149.0.7827.53 are affected. This includes every stable channel release before the specified version and therefore covers typical consumer desktop and ChromeOS deployments.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity, and the EPSS score of <1% indicates a low exploitation probability, with no listing in the CISA KEV catalog. The flaw requires prior renderer compromise; a crafted HTML page can trigger execution of code within that sandbox. Because the vulnerability hinges on renderer compromise, the attack surface is limited, yet the consequences of successful exploitation remain significant. Administrators should therefore treat the vulnerability as potentially serious until a patch is released.
OpenCVE Enrichment
Debian DSA