CVE-2025-11205

Published Nov 6, 2025

Last updated 13 days ago

Overview

Description
Heap buffer overflow in WebGPU in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Source
chrome-cve-admin@google.com
NVD status
Analyzed
Products
chrome

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

chrome-cve-admin@google.com
CWE-122
nvd@nist.gov
CWE-787

Social media

Hype score
Not currently trending
  1. #VulnerabilityReport #Chrome141 Chrome 141 Stable Channel Update Patches High-Severity Vulnerabilities (CVE-2025-11205 & CVE-2025-11206) https://t.co/48mr9KztkK

    @Komodosec

    7 Nov 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-11205 Heap buffer overflow in WebGPU in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who had compromised the renderer process to potentially exploit heap … https://t.co/kwWXsnun3T

    @CVEnew

    6 Nov 2025

    280 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Google、Chrome 141の安定版で2件の危険性の高い脆弱性(CVE-2025-11205,CVE-2025-11206)を含む21件の脆弱性を修正 https://t.co/QZ0aUDUQCB #セキュリティ対策Lab #セキュリティ #Security

    @securityLab_jp

    5 Oct 2025

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. ⚠️Vulnerabilidades en productos Google Chrome ❗CVE-2025-11205 ❗CVE-2025-11206 ➡️Más info: https://t.co/yNppcKDjHY https://t.co/0z3KNlgc81

    @CERTpy

    3 Oct 2025

    106 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 📢 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲 𝐔𝐩𝐝𝐚𝐭𝐞 𝐆𝐮𝐢𝐝𝐞 - 𝐌𝐢𝐜𝐫𝐨𝐬𝐨𝐟𝐭 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲 𝐑𝐞𝐬𝐩𝐨𝐧𝐬𝐞 𝐂𝐞𝐧𝐭𝐞𝐫 • Microsoft released a security update guide. • The guide c

    @PurpleOps_io

    3 Oct 2025

    33 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. Chrome 141 Update Fixes High-Severity Flaws (CVE-2025-11205/6). Patch NOW to Prevent Remote Access! . Read the full report on - https://t.co/vZb7f7L3dq https://t.co/8t90gc02O5

    @Iambivash007

    2 Oct 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. (CVE-2025-11205)[442444724][Dawn]Heap-BoF in dawn(open-source and cross-platform implementation of the WebGPU standard) ReflectEntryPointUsingTint https://t.co/2Y2QsPxweT https://t.co/IyPBot5Ros https://t.co/7Bdq2AXh6k Reported by Atte Kettunen https://t.co/Jt8FPJNJgw

    @xvonfers

    2 Oct 2025

    686 Impressions

    0 Retweets

    0 Likes

    4 Bookmarks

    0 Replies

    0 Quotes

Configurations