Description
Out of bounds read in Media in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6Attack Vector: Network
Complexity: Low
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: None
Availability: None
Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-p97f-m8c4-2pvc: Out of bounds read in Media in Google Chrome prior to 141↗2025-11-07 ▶ OSVCVE-2025-11211: Out of bounds read in Media in Google Chrome prior to 141↗2025-11-06 ▶ CVEListCVE-2025-11211: Out of bounds read in Media in Google Chrome prior to 141↗2025-11-06 ▶ 📋Vendor Advisories
4Red Hatchromium-browser: Out of bounds read in Media↗2025-11-06 ▶ MicrosoftChromium: CVE-2025-11211 Out of bounds read in Media↗2025-10-14 ▶ ChromeStable Channel Update for Desktop: CVE-2025-11211↗2025-09-30 ▶ DebianCVE-2025-11211: chromium - Out of bounds read in Media in Google Chrome prior to 141.0.7390.54 allowed a re...↗2025 ▶ 🕵️Threat Intelligence
3QualysMicrosoft and Adobe Patch Tuesday, October 2025 Security Update Review | Qualys↗2025-10-14 ▶ QualysMicrosoft and Adobe Patch Tuesday, October 2025 Security Update Review↗2025-10-14 ▶ BleepingcomputerMicrosoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws↗2025-10-14 ▶