Severity: CriticalAction: Patch
Long Term Support Channel Update for ChromeOS
Patch
Apply the vendor's security update for the affected products.
Official fix available since
Apply the vendor's update to every affected system. Check the fixed-in versions below where known.
Basis: Google Chrome Releases vendor advisory
Out of bounds read in CrashReporting in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Source: NIST National Vulnerability Database. Official vulnerability data, reproduced as published.
| Product | Vendor | Affected versions | Fixed in | Source |
|---|---|---|---|---|
| Chrome | < 152.0.7977.82 | 152.0.7977.82 | NVD |
Sources: NVD = NIST National Vulnerability Database.
Developments from the last 30 days, newest first.
CVE-2026-85052 scored CVSS 3.1
Basis: NIST National Vulnerability Database
Apply the vendor's security update for the affected products.