Google Chrome DevTools Out-of-Bounds Memory Access Vulnerability Allowing Heap Corruption

Vulnerability

A vulnerability allowing out-of-bounds memory access has been identified in the DevTools component of Google Chrome. This issue affects versions prior to 136.0.7103.59. The vulnerability could be exploited by a remote attacker who convinces a user to perform specific UI gestures, potentially leading to heap corruption via a crafted HTML page.

Impact

Exploitation of this vulnerability could result in heap corruption, which may be leveraged to execute arbitrary code.

Remediation

Users can update to Google Chrome version 136.0.7103.59 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.