Impact
Insufficient validation of untrusted input in Google's Dawn rendering engine on Android (CWE‑20) enables a remote attacker, who has already compromised the renderer process, to load a specially crafted HTML page that may escape the browser sandbox. The escape could elevate the attacker’s privileges beyond the renderer’s restricted domain, potentially allowing compromise of other applications on the device. The vulnerability does not provide a direct code execution path from an external host; it requires prior compromise of the renderer process.
Affected Systems
Google Chrome on Android versions earlier than 150.0.7871.46 are affected. Only builds before this patch contain the vulnerable Dawn code; newer releases include the fix.
Risk and Exploitability
The CVSS score of 8.3 denotes high severity, while the EPSS score of < 1 % suggests a low likelihood of current exploitation. The flaw requires an attacker to first compromise the renderer process, limiting direct exploitation opportunities. The vulnerability is not listed in the CISA KEV catalog. Attackers who succeed in compromising the renderer can pivot to escape the sandbox, thereby jeopardizing device security.
OpenCVE Enrichment
Debian DLA
Debian DSA