Description
Improper state validation in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-15
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Memory Disclosure
Action: Patch immediately
AI Analysis

Impact

Improper state validation in the Skia graphics library used by Google Chrome, classified as CWE-754 and also exhibiting an out‑of‑bounds read (CWE-125), allows a remote attacker who has already compromised the renderer process to read memory outside the expected sandbox boundaries. This flaw can lead to disclosure of information stored in the renderer, as the attacker can access memory that should be protected by the sandbox.

Affected Systems

Google Chrome desktop releases before version 153.0.8010.47 on all platforms supported by Skia are impacted. No other Chrome products or platforms are listed.

Risk and Exploitability

The CVSS score of 8.3 indicates high severity. Because the EPSS score is below 1%, the likelihood of exploitation in the wild is very low. The flaw is not listed in CISA’s KEV catalog. Exploitation requires the attacker to first compromise the renderer process, typically via a malicious web page or other user‑initiated action. Once the renderer is compromised, the attacker may read memory beyond the sandbox. The likely attack vector is inferred to be a crafted web page that triggers the state validation bug.

Generated by OpenCVE AI on September 22, 2026 at 01:21 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Install the latest Google Chrome update (version 153.0.8010.47 or newer).
  • Verify that the default sandbox settings remain enabled in the renderer process.
  • Disable hardware acceleration as a temporary mitigation until the patch is applied.

Generated by OpenCVE AI on September 22, 2026 at 01:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4790-1 chromium security update
Debian DSA Debian DSA DSA-6506-1 chromium security update
History

Tue, 22 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Title Memory Read Outside Sandbox via Skia State Validation chromium-browser: skia: Skia in chromium-browser: Information disclosure via improper state validation
Weaknesses CWE-125
References
Metrics threat_severity

None

threat_severity

Moderate


Fri, 18 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Title Memory Read Outside Sandbox via Skia State Validation

Thu, 17 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Wed, 16 Sep 2026 00:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Tue, 15 Sep 2026 20:45:00 +0000

Type Values Removed Values Added
Description Improper state validation in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Weaknesses CWE-754
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-09-15T23:42:56.958Z

Reserved: 2026-09-14T22:52:28.093Z

Link: CVE-2026-91733

cve-icon Vulnrichment

Updated: 2026-09-15T23:42:49.684Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-15T21:16:46.770

Modified: 2026-09-17T16:04:09.860

Link: CVE-2026-91733

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-15T20:41:30Z

Links: CVE-2026-91733 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-22T01:30:17Z

Weaknesses
  • CWE-125

    Out-of-bounds Read

  • CWE-754

    Improper Check for Unusual or Exceptional Conditions