Heap Buffer Overflow Vulnerability in Google Chrome
CVE-2025-4096

8.8HIGH

Key Information:

Vendor
Google
Status
Vendor
CVE Published:
5 May 2025

Summary

A heap buffer overflow vulnerability exists in the HTML processing component of Google Chrome versions prior to 136.0.7103.59, which could be exploited by remote attackers. By using specially crafted HTML content, an attacker may cause heap corruption, potentially leading to unintended code execution or crashes. It is crucial for users to update their browsers to safeguard against these types of attacks.

Affected Version(s)

Chrome 136.0.7103.59

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-4096 : Heap Buffer Overflow Vulnerability in Google Chrome | SecurityVulnerability.io