CVE-2026-76046: Buffer Overflow
Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Affected Software
Event History
Frequently Asked Questions
Which deployments are affected?
The affected product is Google Chrome for Android before version 151.0.7922.169. The issue is in ANGLE and is rated High by Chromium.
What does an attacker need to exploit this vulnerability?
An attacker must first compromise the Chrome renderer process. They can then use a crafted HTML page to trigger the buffer overflow and execute arbitrary code outside Chrome's sandbox.
What should teams do to remediate the issue?
Update Google Chrome for Android to version 151.0.7922.169 or later. The provided information does not describe a workaround or mitigation for systems that cannot be updated immediately.