CVE-2025-14766

Published Dec 16, 2025

Last updated 18 days ago

Overview

Description
Out of bounds read and write in V8 in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Source
chrome-cve-admin@google.com
NVD status
Analyzed
Products
chrome

Risk scores

CVSS 3.1

Type
Primary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-125

Social media

Hype score
Not currently trending
  1. Critical security update for #Chromium on #Fedora 42. The just-released version 143.0.7499.146 closes two dangerous memory corruption holes (CVE-2025-14765 / CVE-2025-14766) that could lead to heap corruption and remote compromise. Read more: 👉 https://t.co/lwsg9umAEP #Securi

    @Cezar_H_Linux

    20 Dec 2025

    32 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Technical deep dive: The new #Fedora 43 Chromium advisory (143.0.7499.146) addresses critical memory safety failures. CVE-2025-14765 (WebGPU UAF) and CVE-2025-14766 (V8 OOB) are classic pathways to heap corruption and RCE. Read more: 👉 https://t.co/bcAbBgHiqB #Security https:/

    @Cezar_H_Linux

    20 Dec 2025

    72 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Google、デスクトップ版 Chromeを緊急更新 WebGPUとV8の高危険度脆弱性を修正(CVE-2025-14765,CVE-2025-14766) https://t.co/W2lp7GvovR #セキュリティ対策Lab #セキュリティ #Security #サイバー攻撃

    @securityLab_jp

    18 Dec 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. ⚠️ Chrome Security Update Google released Chrome v143.0.7499.146/.147 fixing critical RCE flaws: • CVE-2025-14765 – Use-after-free in WebGPU • CVE-2025-14766 – OOB read/write in V8 Rolling out now for All OS. Update ASAP. 🔒 #CyberSecurity #Vulnerabilities #Chrome

    @sp20_10

    17 Dec 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 【今日のChrome】今日も緊急更新。 WebGPUにおける解放後メモリ使用CVE-2025-14765とV8におけるメモリ破壊CVE-2025-14766。 https://t.co/Je1OXzrlx6

    @__kokumoto

    17 Dec 2025

    998 Impressions

    2 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations