Description
Use after free in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-07-30
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is a use‑after‑free in Chromium's Skia graphics library. The flaw allows a remote attacker who can already compromise the process to potentially escape the browser sandbox and execute code with the privileges of the host system. The flaw arises from an object being freed while still referenced, enabling the attacker to manipulate memory and trigger arbitrary execution. The attacker would need to deliver a crafted HTML page that leads the compromised renderer to access freed memory. By controlling this memory, the attacker can trigger a sandbox escape, which may then allow higher‑privilege execution or lateral movement within the machine. The impact includes confidentiality, integrity, and availability damage if the attacker succeeds. The vulnerability has a CVSS score of 8.3, an EPSS of less than 1% and is not listed in the CISA KEV catalog. Its severity is classified as Critical by Chromium. Unable to determine if remote code execution is guaranteed; the likelihood of exploitation is low but the consequence is high.

Affected Systems

Google Chrome desktop browsers running any version prior to 151.0.7922.72 are affected. The issue was fixed in Chrome 151.0.7922.72.

Risk and Exploitability

The exploit requires that the attacker first compromise the renderer process, which may involve delivering malicious web content. Once compromised, the use‑after‑free can be used to escape the sandbox. While the EPSS score is low, the high impact and critical severity mean that any successful exploitation would be devastating. The CVE is not currently listed in the CISA KEV catalog, but the lack of exploitation reports does not reduce the need for prompt patching.

Generated by OpenCVE AI on August 2, 2026 at 07:30 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to version 151.0.7922.72 or newer.
  • Maintain Chrome’s default sandboxing settings and ensure that extensions do not grant elevated renderer privileges.
  • Keep the operating system and security software up to date and monitor for abnormal process activity that may indicate a sandbox escape attempt.

Generated by OpenCVE AI on August 2, 2026 at 07:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4710-1 chromium security update
Debian DSA Debian DSA DSA-6408-1 chromium security update
History

Fri, 31 Jul 2026 05:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.0, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}


Thu, 30 Jul 2026 12:15:00 +0000

Type Values Removed Values Added
Title chromium-browser: chromium-browser: Use after free in Skia
Weaknesses CWE-825
References
Metrics threat_severity

None

cvssV3_1

{'score': 9.0, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H'}

threat_severity

Critical


Thu, 30 Jul 2026 02:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Thu, 30 Jul 2026 01:00:00 +0000

Type Values Removed Values Added
Description Use after free in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-31T03:56:23.610Z

Reserved: 2026-07-27T23:34:14.751Z

Link: CVE-2026-17653

cve-icon Vulnrichment

Updated: 2026-07-30T20:38:39.595Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-30T01:16:27.190

Modified: 2026-08-06T00:35:15.360

Link: CVE-2026-17653

cve-icon Redhat

Severity : Critical

Publid Date: 2026-07-30T00:18:43Z

Links: CVE-2026-17653 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T07:45:03Z

Weaknesses