Google Chrome PDFium Heap Buffer Overflow Vulnerability Allowing Potential Heap Corruption Exploitation

Vulnerability

A heap buffer overflow vulnerability has been identified in the PDFium component of Google Chrome, affecting versions prior to 146.0.7680.153. This vulnerability allows remote attackers to potentially exploit heap corruption by using a crafted PDF file.

Impact

Exploitation of this vulnerability could lead to a heap corruption, allowing for potential arbitrary code execution or other malicious actions by manipulating the application's memory.

Remediation

Users can update to Google Chrome version 146.0.7680.153 or later to address this vulnerability.

Added: Mar 20, 2026, 2:21 AM
Updated: Mar 20, 2026, 2:21 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.3
exploitability
4.2
remediation
7.7
relevance
4.2
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.