Google Chrome Heap Buffer Overflow Vulnerability in libaom

Vulnerability

A heap buffer overflow vulnerability has been identified in the libaom library used by Google Chrome. This issue affects Chrome versions prior to 139.0.7258.127. The vulnerability allows remote attackers to potentially exploit heap corruption by sending a curated set of gestures.

Impact

Exploitation of this vulnerability could lead to heap corruption, allowing for potential arbitrary code execution.

Remediation

Users can update to Google Chrome version 139.0.7258.127 or later to address this vulnerability.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
10.0
exploitability
4.4
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.