Google Chrome Heap Buffer Overflow Vulnerability in Skia Allowing Out of Bounds Memory Access

Vulnerability

A heap buffer overflow vulnerability has been identified in the Skia graphics library used by Google Chrome. This issue affects Chrome versions prior to 146.0.7680.71. The vulnerability allows remote attackers to perform out of bounds memory access by exploiting a crafted HTML page.

Impact

Exploitation of this vulnerability leads to a heap buffer overflow, allowing for out of bounds memory access. Such memory corruption issues can often be exploited to execute arbitrary code or cause a denial of service.

Remediation

Users can update to Google Chrome version 146.0.7680.71 or later to address this vulnerability.

Added: Mar 11, 2026, 10:26 PM
Updated: Mar 11, 2026, 10:26 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.3
exploitability
4.2
remediation
7.7
relevance
3.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.