CVE-2026-9117General(google / chrome)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch google chrome systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: High)

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-843

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • chrome_os
  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-05-20); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Products
chromechrome_oslinux_kernel

1 version affected across 3 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-05-20: 1Mentions · 2026-06-05: 1Mentions · 2026-06-07: 1Patch / Workaround · 2026-06-05: 1Technical Details · 2026-05-20: 105-2006-0506-07
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-05-201
Disclosure1
2026-06-051
General1
2026-06-071
General1
Full discourse3 posts
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-9117 Google Chrome 148.0.7778.179以前のバージョン(LinuxおよびChromeOS)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/04/cve-2026-9117-google-chrome-14807778179linuxchromeos/ #IT #Security #cybersecurity

    Post summary

    A Japanese blog post announces CVE-2026-9117 for older Chrome Linux/ChromeOS releases and promises explanation and mitigation, but provides no concrete technical details, exploits, or evidence of active attacks.

    0000053
    209 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-9117 Google Chrome 148.0.7778.179以前のバージョン(LinuxおよびChromeOS)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/04/cve-2026-9117-google-chrome-14807778179linuxchromeos/ #IT #Security #cybersecurity

    Post summary

    The article offers a readable explanation of CVE-2026-9117, covering its impact on older Chrome versions for Linux/ChromeOS and summarizing countermeasures.

    0000066
    209 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-9117 Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a craf... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-9117

    Post summary

    The text provides an announcement of a type‑confusion vulnerability (CVE‑2026‑9117) in Chrome’s GFX component on Linux/ChromeOS that could lead to a sandbox escape, but offers no PoC, exploit code, or patch information.

    00000103
    4.0K followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appgooglechrome---
OSgooglechrome_os---
OSlinuxlinux_kernel---

Explore more