Impact
An integer overflow in the Media component of Google Chrome on macOS allows a remote attacker, once they have already compromised the renderer process, to potentially escape its sandbox. The flaw is triggered by a specially crafted HTML page that feeds malformed media data to the parser, exceeding a 32‑bit signed integer bound. The vulnerability is categorized as CWE‑472 and CWE‑190 and was rated high severity in the Chromium security assessment.
Affected Systems
The CVE specifically references Google Chrome for macOS. Versions prior to 149.0.7827.103 are affected; the description does not state a concern for Windows or Linux platforms.
Risk and Exploitability
The EPSS score is < 1%, and the vulnerability is not listed in CISA KEV, indicating a limited public exploitation footprint so far. Nevertheless, the CVSS score of 8.3 and the potential for a sandbox escape demand caution. The attacker must first deliver a malicious HTML page containing crafted media content that is processed by the vulnerable renderer; this typically occurs when the user visits a compromised or malicious website. Once the renderer process is compromised, the integer overflow can allow code execution outside the sandbox, potentially enabling a full system compromise.
OpenCVE Enrichment
Debian DSA