Upstream information
Description
Use after free in Receiver in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)SUSE information
Overall state of this security issue: Revisit
This issue is currently rated as having critical severity.
| CVSS detail | CNA (CISA-ADP) |
|---|---|
| Base Score | 8.3 |
| Vector | CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H |
| Attack Vector | Adjacent Network |
| Attack Complexity | High |
| Privileges Required | None |
| User Interaction | None |
| Scope | Changed |
| Confidentiality Impact | High |
| Integrity Impact | High |
| Availability Impact | High |
| CVSSv3 Version | 3.1 |
SUSE Timeline for this CVE
CVE page created: Wed Sep 9 12:58:07 2026CVE page last modified: Wed Sep 9 21:04:02 2026