Uninitialized Resource Vulnerability in Google Chrome for Android
CVE-2026-102311

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-102311?

A vulnerability in Google Chrome for Android allows a remote attacker who has compromised the renderer process to access memory outside the intended sandbox. This issue arises from an uninitialized resource in the GPU, essentially permitting unauthorized read access through a specially crafted HTML page. Users are encouraged to update to version 154.0.8037.92 or later to mitigate this security risk.

Affected Version(s)

Chrome 154.0.8037.92

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.