CRITICAL✓ PATCH🇵🇱 Wersja polska

CVE-2026-11088

CVSS 9.6pub. 2026-06-04upd. 2026-06-05

Integer overflow in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

🤖 AI Analysis
How it works

The bug is an integer overflow in the ANGLE library, which is responsible for translating OpenGL ES graphics calls. An attacker who has previously gained control over the renderer process (e.g., through a separate vulnerability) can prepare a specially crafted HTML page that triggers this overflow. As a result of incorrect integer value calculation, unpredictable memory behavior can occur, enabling escape from the boundaries of the isolated browser sandbox environment.

Impact

An attacker can escape the browser sandbox (sandbox escape), which potentially allows execution of malicious code outside the controlled Chrome environment and unauthorized access to the victim's operating system. With high ratings for confidentiality, integrity, and availability in the CVSS vector, consequences may include complete system takeover.

Mitigation & patch

Google Chrome should be updated to version 149.0.7827.53 or later, in accordance with information published by the vendor in the references. The update is available through the browser's built-in update mechanism or the chromereleases.googleblog.com website.

Who is affected

Google Chrome in versions preceding 149.0.7827.53

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
  • Google Chrome

    APP
    Google
    < 149.0.7827.53
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2025-10585CRITICAL9.8⚠ KEVPL ✓same product

Type confusion w V8 (Google Chrome) — zdalne uszkodzenie sterty

CVE-2024-7971CRITICAL9.6⚠ KEVPL ✓same product

Type confusion w V8 (Google Chrome/Edge) umożliwiający heap corruption

CVE-2024-5274CRITICAL9.6⚠ KEVPL ✓same product

Type Confusion w V8 (Google Chrome) — RCE przez spreparowaną stronę HTML

CVE-2024-4947CRITICAL9.6⚠ KEVPL ✓same product

Type Confusion w silniku V8 Chrome — zdalne wykonanie kodu (RCE)

CVE-2024-4671CRITICAL9.6⚠ KEVPL ✓same product

Use-after-free w Google Chrome Visuals umożliwiający ucieczkę z sandbox