PT-2026-65999 · Google · Google Chrome

CVE-2026-17680

·

Published

2026-07-30

·

Updated

2026-08-03

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome on ChromeOS versions prior to 151.0.7922.72
Description A heap buffer overflow occurs in the Color component. This issue allows a remote attacker who has already compromised the renderer process to potentially achieve a sandbox escape by using a specially crafted HTML page. A heap buffer overflow is a memory corruption error that happens when a program writes more data to a heap-allocated buffer than it can hold.
Recommendations Update Google Chrome on ChromeOS to version 151.0.7922.72 or later.

Fix

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-17680
ECHO-80CE-B9D4-0CB2
OPENSUSE-SU-2026:11434-1
OPENSUSE-SU-2026:21514-1

Affected Products

Google Chrome