Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
History

Mon, 15 Dec 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipados
Apple iphone Os
Apple safari
Apple tvos
Apple visionos
Apple watchos
Linux
Linux linux Kernel
Microsoft
Microsoft edge Chromium
Microsoft windows
Weaknesses CWE-787
CPEs cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Apple ipados
Apple iphone Os
Apple safari
Apple tvos
Apple visionos
Apple watchos
Linux
Linux linux Kernel
Microsoft
Microsoft edge Chromium
Microsoft windows

Sun, 14 Dec 2025 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Google
Google chrome
Vendors & Products Apple
Apple macos
Google
Google chrome

Fri, 12 Dec 2025 21:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 12 Dec 2025 20:45:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2025-12-12T00:00:00+00:00', 'dueDate': '2026-01-02T00:00:00+00:00'}


Fri, 12 Dec 2025 19:30:00 +0000

Type Values Removed Values Added
Description Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2025-12-13T04:55:18.790Z

Reserved: 2025-12-05T22:14:20.036Z

Link: CVE-2025-14174

cve-icon Vulnrichment

Updated: 2025-12-12T20:30:09.225Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-12T20:15:39.663

Modified: 2025-12-15T15:16:08.650

Link: CVE-2025-14174

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-14T21:16:02Z