CVE-2026-95298

unknown
Assigned by CNA: chrome
Published 2026-09-29 · Modified 2026-09-29
CVSS v3
—
CVSS v4 NEW
—
not yet in upstream
VIR risk
—

Description

Use after free in Browser in Google Chrome prior to 154.0.8037.57 allowed a local attacker to potentially execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)

Predictions

Exploit likelihood
20%
Patch ETA
—

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker · View original ↗ · DFSG

CVE-2026-95298 NameCVE-2026-95298 SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) Vulnerable and fixed packages The table below lists information on source packages. Source PackageReleaseVersionStatus chromium (PTS)bookworm150.0.7871.100-1~deb12u1vulnerable bookworm…

CVE-2026-95298

NameCVE-2026-95298
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
chromium (PTS)bookworm150.0.7871.100-1~deb12u1vulnerable
bookworm (security)153.0.8010.52-1~deb12u1vulnerable
trixie150.0.7871.181-1~deb13u1vulnerable
trixie (security)153.0.8010.52-1~deb13u1vulnerable
forky, sid153.0.8010.52-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
chromiumsource(unstable)(unfixed)

Home - Debian Security - Source (Git)

OS impact

windows Windows Affected 1 release
VersionStatusFixed in
— Affected —
debian Debian Mixed 4 releases
VersionStatusFixed in
trixie Fixed 154.0.8037.57-1~deb13u1
sid Fixed 154.0.8037.57-1
forky Fixed 154.0.8037.57-1
bookworm Affected —

References

CWEs

CWE-416

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.