CVE-2025-8901

Published Aug 13, 2025

Last updated 13 days ago

Overview

Description
Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Source
chrome-cve-admin@google.com
NVD status
Analyzed
Products
chrome

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

chrome-cve-admin@google.com
CWE-787
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-787

Social media

Hype score
Not currently trending
  1. ⚠️Actualización de seguridad de Google Chrome ❗CVE-2025-8879 ❗CVE-2025-8880 ❗CVE-2025-8901 ➡️Más info: https://t.co/wQPxpQ7cjP https://t.co/1qJc5Il2uT

    @CERTpy

    19 Aug 2025

    107 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-8901 (CVSS:8.8, HIGH) is Analyzed. Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds..https://t.co/lufS67O7W0 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    18 Aug 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Chromium: CVE-2025-8901 Out of bounds write in ANGLE https://t.co/c5Q0aHQdgk #SecQube #cybersecurity

    @SecQube

    16 Aug 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 BREAKING: openSUSE Chromium update fixes: HEAP OVERFLOW in libaom (CVE-2025-8879). V8 SANDBOX ESCAPE (CVE-2025-8880). ANGLE OOB WRITE (CVE-2025-8901). Read more: 👉 https://t.co/dpEQAe1wmz #openSUSE #Security https://t.co/RO3lvLfuDo

    @Cezar_H_Linux

    15 Aug 2025

    27 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Google、Chromeの定例アップデートで高危険度の脆弱性を修正-CVE-2025-8880,CVE-2025-8901 他 #セキュリティ対策Lab #セキュリティ #Security https://t.co/cuROPezFMI

    @securityLab_jp

    14 Aug 2025

    84 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. (CVE-2025-8901)[435139154][ANGLE][Translator] Without this validation, a shader using an inout variable can write into a memory beyond the limit set by MaxDrawBuffers when shader framebuffer fetch is enabled(OOBW) https://t.co/Xto014vHvk 👀Reported by Google Big Sleep

    @xvonfers

    12 Aug 2025

    1240 Impressions

    3 Retweets

    12 Likes

    4 Bookmarks

    0 Replies

    0 Quotes

Configurations