Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-79147

Опубликовано: 25 авг. 2026
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)

A flaw was found in Skia, a 2D graphics library used in Google Chrome. A remote attacker, after compromising the renderer process, could exploit this vulnerability by tricking a user into visiting a specially crafted HTML page. This could potentially lead to the disclosure of sensitive information.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10firefoxNot affected
Red Hat Enterprise Linux 6webkitgtkNot affected
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 7webkitgtk3Not affected
Red Hat Enterprise Linux 7webkitgtk4Affected
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 9firefoxNot affected
Red Hat Enterprise Linux 9webkit2gtk3Affected
Red Hat Enterprise Linux 8webkit2gtk3FixedRHSA-2026:7408430.09.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-201
https://bugzilla.redhat.com/show_bug.cgi?id=2523912chromium-browser: skia: chromium-browser: skia: Information leak via crafted HTML page in Google Chrome

EPSS

Процентиль: 12%
0.00223
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 месяцев назад

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 5.3
nvd
около 2 месяцев назад

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)

msrc
около 1 месяца назад

Chromium: CVE-2026-79147 Information leak in Skia

CVSS3: 5.3
debian
около 2 месяцев назад

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allow ...

CVSS3: 5.3
github
около 2 месяцев назад

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)

EPSS

Процентиль: 12%
0.00223
Низкий

4.3 Medium

CVSS3