Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 148.0.7778.216
An integer overflow vulnerability has been identified in PDFium, a component of Google Chrome, in versions prior to 148.0.7778.216. This vulnerability allows a remote attacker who has compromised the renderer process to execute arbitrary code within a sandboxed environment by using a crafted font file.
Exploitation of this vulnerability could lead to arbitrary code execution within the renderer process, potentially allowing the attacker to execute malicious code in a sandboxed environment.
Users can update to Google Chrome version 148.0.7778.216 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.