Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-79275

Опубликовано: 25 авг. 2026
Источник: redhat
CVSS3: 9.6

Описание

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

A flaw was found in ANGLE, a component of Google Chrome. This use-after-free vulnerability allows a remote attacker to execute arbitrary code outside the browser's security sandbox. The attacker could exploit this by enticing a user to visit a specially crafted HTML page.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10firefoxNot affected
Red Hat Enterprise Linux 10thunderbirdNot affected
Red Hat Enterprise Linux 6webkitgtkNot affected
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 7webkitgtk3Not affected
Red Hat Enterprise Linux 7webkitgtk4Affected
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 8mozjs60Not affected
Red Hat Enterprise Linux 8thunderbirdNot affected
Red Hat Enterprise Linux 9firefoxNot affected

Показывать по

Дополнительная информация

Статус:

Critical
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2523942chromium-browser: angle: ANGLE: Arbitrary code execution via use after free

9.6 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.6
ubuntu
около 2 месяцев назад

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

CVSS3: 9.6
nvd
около 2 месяцев назад

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

msrc
около 1 месяца назад

Chromium: CVE-2026-79275 Use after free in ANGLE

CVSS3: 9.6
debian
около 2 месяцев назад

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowe ...

CVSS3: 9.6
github
около 2 месяцев назад

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

9.6 Critical

CVSS3