View Ridge Security
Back to Cyber HoseThreat Research & Deep Dives

Multiple use-after-free flaws in Google Chrome before 150.0.7871.128

🕵️ RESEARCH & DEEP DIVES

  • Multiple use-after-free and memory corruption flaws in Google Chrome before 150.0.7871.128 — CVE ThreatInt
    Google Chrome versions prior to 150.0.7871.128 contain multiple use-after-free vulnerabilities exploitable via crafted HTML or files.
    • Affects Google Chrome versions before 150.0.7871.128 on desktop, Linux, Android, and Mac platforms
    • Vulnerabilities include use-after-free in Aura, Ozone, Cast, Network, GPU, CameraCapture components and out-of-bounds in V8 engine
    • Exploitation vectors involve crafted HTML pages or malicious files leading to heap corruption, arbitrary code execution, or sandbox escape
    • Some vulnerabilities require user interaction such as specific UI gestures on Linux
    • Severity ranges from High to Critical depending on the component and impact

🔓 CVEs & KEV

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check