Integer overflow in Skia in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
The web application does not sufficiently verify inputs that are assumed to be immutable but are actually externally controllable, such as hidden form fields.
Link | Tags |
---|---|
https://chromereleases.googleblog.com/2025/01/stable-channel-update-for-desktop_14.html | vendor advisory |
https://issues.chromium.org/issues/382786791 | issue tracking exploit |