Impact
Google Chrome before version 149.0.7827.53 contains a use‑after‑free bug in the Input module. A maliciously crafted HTML page can trigger the defect and potentially allow the attacker to escape the browser sandbox, moving from a restricted execution context into higher‑privilege code execution. The flaw involves use‑after‑free memory corruption and is classified as CWE‑416 and CWE‑825.
Affected Systems
The vulnerability affects all installations of Google Chrome older than 149.0.7827.53, regardless of platform. Any user who visits a maliciously forged HTML page while running an affected version is at risk.
Risk and Exploitability
While the Chromium project rates the severity as low, the newly assigned CVSS score of 9.6 indicates a critical risk. The need for a malicious page to be loaded by a user limits its exposure. An EPSS score of < 1% and the absence from CISA’s KEV catalog indicate no known widespread exploitation at this time. Nevertheless, if an attacker can control the content or persuade a user to load the payload, sandbox escape could lead to compromise of the host system.
OpenCVE Enrichment
Debian DSA