Impact
Uninitialized variable usage (CWE-457) in the ANGLE graphics library of Google Chrome for Windows exposed a vector for memory disclosure through a crafted HTML page, enabling a remote attacker to read potentially sensitive data from the victim process.
Affected Systems
Google Chrome for Windows versions earlier than 150.0.7871.46 are vulnerable; the issue arises in the Angle graphics component used by the browser on Windows platforms.
Risk and Exploitability
The CVSS score of 6.5 indicates medium‑high severity while the EPSS score of < 1% suggests a very low current probability of exploitation; the vulnerability is not listed in CISA's KEV catalogue. Based on the description, it is inferred that a remote attacker can deliver malicious HTML content over the internet, after which the flaw permits memory disclosure. The likelihood of exploitation remains low, but the potential impact warrants timely remediation.
OpenCVE Enrichment
Debian DLA
Debian DSA