Integer Overflow Vulnerability in Google Chrome
CVE-2026-4679

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
24 March 2026

What is CVE-2026-4679?

An integer overflow vulnerability exists within the Fonts component of Google Chrome, affecting versions prior to 146.0.7680.165. This flaw allows remote attackers to execute an out-of-bounds memory write by crafting a malicious HTML page. If successfully exploited, this could lead to various unauthorized actions on affected systems, potentially compromising user data and system integrity.

Affected Version(s)

Chrome 146.0.7680.165

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.