Description
Use after free in Skia in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published: 2026-06-08
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A use‑after‑free vulnerability in the Skia graphics library of Google Chrome allows an attacker, after compromising the renderer process, to potentially escape the process sandbox by loading a crafted HTML page. The flaw can lead to arbitrary code execution if the attacker controls the renderer. The primary weakness is a memory safety issue, identified as CWE‑416.

Affected Systems

Google Chrome versions prior to 149.0.7827.103 are affected. The vulnerability exists in the renderer component that renders web pages, and any user who visits a malicious page while the browser is running may expose the system to risk.

Risk and Exploitability

The advisory lists the Chromium security severity as High, the CVSS score is 8.3, and the EPSS score is not available. The vulnerability requires an attacker to already have control over the renderer process, which is a significant prerequisite. While an explicit exploitation path is not detailed, the potential for sandbox escape means that successful exploitation could compromise the host system.

Generated by OpenCVE AI on June 9, 2026 at 03:54 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to version 149.0.7827.103 or later.
  • Force Chrome to launch with the most recent security settings enabled.
  • Monitor for anomalous renderer behavior and block suspected malicious HTML content if feasible.

Generated by OpenCVE AI on June 9, 2026 at 03:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 09 Jun 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows

Tue, 09 Jun 2026 04:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Skia Leading to Potential Sandbox Escape in Google Chrome

Tue, 09 Jun 2026 02:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 09 Jun 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Tue, 09 Jun 2026 01:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Skia Leading to Potential Sandbox Escape in Google Chrome

Mon, 08 Jun 2026 23:45:00 +0000

Type Values Removed Values Added
Description Use after free in Skia in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-06-09T03:56:10.653Z

Reserved: 2026-06-08T21:33:44.583Z

Link: CVE-2026-11663

cve-icon Vulnrichment

Updated: 2026-06-09T01:36:02.686Z

cve-icon NVD

Status : Analyzed

Published: 2026-06-09T00:16:49.407

Modified: 2026-06-09T14:58:50.903

Link: CVE-2026-11663

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-09T04:00:14Z

Weaknesses