Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 134.0.6998.177
This vulnerability is being actively exploited in the wild.
A sandbox escape vulnerability has been identified in Google Chrome's Mojo component on Windows, affecting versions prior to 134.0.6998.177. The issue arises from an incorrect handle being provided in unspecified circumstances, which allowed remote attackers to escape the sandbox by using a malicious file.
Exploitation of this vulnerability allows for a sandbox escape, enabling potentially malicious files to bypass Chrome's security restrictions and interact with the underlying operating system or user environment.
Users can update to Google Chrome version 134.0.6998.177 or later to address this vulnerability. The update will be rolled out over the coming days and weeks.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.