BlackTreeCVE Intelligence
← Back to the CVE catalogue
Full vulnerability report · 2025
CVE-2025-14174High confidence

Google Chromium Out of Bounds Memory Access Vulnerability

Google · Chromium

8.8HighCVSS 3.1
Recommended action
Patch only the product branches with a verified fix

CISA confirms exploitation in the wild and lists 2026-01-02 as the remediation due date. Verified remediation exists for at least one product or source, but 2 structured product or package states remain unresolved. Apply remediation only to the exact product branch confirmed by its source.

Fix availability varies by product
R
Operational reassessment

Published severity in operational context

Open reassessment dashboard →
Published severityHighOperational priority:Critical, raised one band.upgradedsince 12 Dec 2025

Evidence used

  • CISA confirms exploitation in the wild.
  • EPSS is 22.33% for the current model date.

Compensating controls

  • Apply the linked authoritative mitigation while planning the permanent fix.
  • Restrict the affected network interface to trusted sources where business-safe.
  • Increase monitoring for the attack path and post-exploitation behaviour described in the report.

Verification

  1. Confirm that the asset runs Google Chromium and falls inside the recorded affected range.
  2. Recheck the vendor advisory before scheduling a change because no verified fixed version is currently retained.
  3. Validate exposure, authentication requirements and compensating controls in the actual environment.
  4. Reopen this reassessment when CVSS, KEV, EPSS, exploit evidence or remediation changes.
Mitigation target: Within 3 daysRemediation target: Within 90 days

This automated reassessment organises public evidence. It does not know asset exposure, business impact or control effectiveness and does not replace CVSS or a human risk decision.

Cross-source reconciliation

Remediation availability differs by product scope

Verified remediation exists for at least one product or source, but 2 structured product or package states remain unresolved. Apply remediation only to the exact product branch confirmed by its source.

Distribution package intelligence

Release-specific package status

Alpine, Debian, ubuntu findings are scoped to the named distribution, release and source package. An absent finding does not mean a package is unaffected.

15 package states
Package result overrides the generic status

BlackTree has verified remediation for at least one product or source, but the relevant distribution still reports no fixed package for 2 affected package states shown here. Treat those rows as affected with no fix until that distribution publishes a fixed version.

Repository candidate not checked

A published vendor fix does not prove that a matching update is enabled and installable on a particular asset. Confirm the local package candidate before scheduling remediation.

Distribution releaseSource packageVendor stateFixed versionEvidence
Alpine v3.23v3.23 · communityqt6-qtwebengineVendor fix publishedAlpine records a security fix at this version. An absent entry does not mean the package is unaffected.6.10.1-r1Alpine Security Database ↗Source updated 11 Sep 2026
Debian trixietrixie · sourcechromiumNot affectedDebian marks this release not affected (fixed-version marker 0).Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian trixietrixie · sourcewebkit2gtkVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1~deb13u1Debian Security Tracker ↗Source updated 6 Oct 2026
Debian trixietrixie · sourcewpewebkitAffected, no fix publishedDebian currently tracks this release as open.Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian bookwormbookworm · sourcechromiumNot affectedDebian marks this release not affected (fixed-version marker 0).Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian bookwormbookworm · sourcewebkit2gtkVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1~deb12u1Debian Security Tracker ↗Source updated 6 Oct 2026
Debian bookwormbookworm · sourcewpewebkitAffected, no fix publishedDebian currently tracks this release as open.Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian forkyforky · sourcechromiumNot affectedDebian marks this release not affected (fixed-version marker 0).Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian forkyforky · sourcewebkit2gtkVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1Debian Security Tracker ↗Source updated 6 Oct 2026
Debian forkyforky · sourcewpewebkitVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1Debian Security Tracker ↗Source updated 6 Oct 2026
Debian sidsid · sourcechromiumNot affectedDebian marks this release not affected (fixed-version marker 0).Not published in this feedDebian Security Tracker ↗Source updated 6 Oct 2026
Debian sidsid · sourcewebkit2gtkVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1Debian Security Tracker ↗Source updated 6 Oct 2026
Debian sidsid · sourcewpewebkitVendor fix publishedDebian records a fixed source-package version for this release.2.50.4-1Debian Security Tracker ↗Source updated 6 Oct 2026
Ubuntu 24.04 LTSnoble · standard archiveqtwebkit-opensource-srcUnder evaluationCanonical reports that the package might be affected and still needs evaluation or fixing.Not published in this feedCanonical Ubuntu Security ↗Source updated 5 Oct 2026
Ubuntu 24.04 LTSnoble · standard archivewebkit2gtkVendor fix publishedCanonical reports that a fixed source package version has been published. Repository candidate availability is not checked by BlackTree.2.50.4-0ubuntu0.24.04.1Canonical Ubuntu Security ↗Source updated 5 Oct 2026
Optional official sources

National CERT insights
?CERT means Computer Emergency Response Team; CSIRT is the closely related term Computer Security Incident Response Team.

Choose official national sources for this report. Each advisory shows its original language. Your selection is remembered on this device and included in shared links.

Official European source

ENISA European Vulnerability Database

Official EUVD identifiers, advisory evidence and known-exploited context. Missing fields are not treated as evidence of low risk.

1 current
ENISA EUVD identifier

EUVD-2025-203113

CISA KEV mirrored by ENISA

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

EUVD state
Present in the current official mapping
Known exploitation
Recorded by ENISA since 12 Dec 2025. Evidence sources: cisa_kev.
ENISA score
8.8 · CVSS 3.1
Advisory evidence
27 linked advisory records
Explicit mitigation evidence

Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.

  • csaf_suse · SUSE-SU-2025:4527-1Security update for webkit2gtk3
  • csaf_redhat · RHSA-2025:23971Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_redhat · RHSA-2025:23663Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_redhat · RHSA-2025:23972Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_ncscnl · NCSC-2026-0064Kwetsbaarheden verholpen in Apple iOS en iPadOS
  • csaf_redhat · RHSA-2025:23975Red Hat Security Advisory: webkitgtk4 security update
  • csaf_redhat · RHSA-2025:23968Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_opensuse · openSUSE-SU-2025:20178-1Security update for chromium
  • csaf_redhat · RHSA-2025:23973Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_redhat · RHSA-2025:23974Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_ncscnl · NCSC-2026-0063Kwetsbaarheden verholpen in Apple macOS
  • csaf_redhat · RHSA-2025:23969Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_redhat · RHSA-2025:23700Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_suse · SUSE-SU-2026:0021-1Security update for webkit2gtk3
  • csaf_redhat · RHSA-2025:23970Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_opensuse · openSUSE-SU-2026:20065-1Security update for webkit2gtk3
  • csaf_ncscnl · NCSC-2025-0396Kwetsbaarheden verholpen in Apple macOS
  • csaf_suse · SUSE-SU-2026:20102-1Security update for webkit2gtk3
  • csaf_redhat · RHSA-2025:23967Red Hat Security Advisory: webkit2gtk3 security update
  • csaf_ncscnl · NCSC-2025-0397Kwetsbaarheden verholpen in Apple iOS en iPadOS
  • csaf_suse · SUSE-SU-2025:4528-1Security update for webkit2gtk3
Recommended actionPatch only the product branches with a verified fix

CISA confirms exploitation in the wild and lists 2026-01-02 as the remediation due date. Verified remediation exists for at least one product or source, but 2 structured product or package states remain unresolved. Apply remediation only to the exact product branch confirmed by its source.

Fix availability varies by product
01

What, why and how

Google Chromium contains an out of bounds memory access vulnerability in ANGLE that could allow a remote attacker to perform out of bounds memory access via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

What

Google Chromium contains an out of bounds memory access vulnerability in ANGLE that could allow a remote attacker to perform out of bounds memory access via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Why

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

How

An attacker operating through a network path may attempt exploitation without authentication after a user interaction. If successful, the issue may cause the confidentiality, integrity or availability impact described by the vendor.

What

Google Chromium contains an out of bounds memory access vulnerability in ANGLE that could allow a remote attacker to perform out of bounds memory access via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Why

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

How

An attacker operating through a network path may attempt exploitation without authentication after a user interaction. If successful, the issue may cause the confidentiality, integrity or availability impact described by the vendor.

02

Exploit reality and attack path

CVSS severity, EPSS forecast probability, public exploit material and CISA-confirmed exploitation are separate signals.

Observed exploitation
?Confirmed exploitation and public exploit material are separate signals. Attacks can occur without public proof-of-concept or exploit code.
Confirmed in the wild

CISA added this CVE to its Known Exploited Vulnerabilities catalogue on 2025-12-12.

Public PoC / exploit material
?Confirmed exploitation and public exploit material are separate signals. Attacks can occur without public proof-of-concept or exploit code.
None recorded

No exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds.

Likely attack path
a network path → Improper Restriction of Operations within the Bounds of a Memory Buffer → cause the confidentiality, integrity or availability impact described by the vendor
Attack surface
Network
Privileges required
None: unauthenticated exploitation is possible
User interaction
Required interaction required
Attack complexity
Low: no specialised conditions are recorded
Security boundary
Unchanged: impact remains within the vulnerable component's security authority
Weakness
?CWE means Common Weakness Enumeration: a standard category for the underlying weakness.
CWE-119 ↗

CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer. The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

CVSS vector
?CVSS means Common Vulnerability Scoring System. The vector records the metric values used to calculate technical severity.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Common Vulnerability Scoring System 3.1: the compact vector below is decoded into plain language.

AVNetworkAttack vector: The vulnerable component can be reached over a network.ACLowAttack complexity: No specialised conditions are required beyond attacker-controlled input.PRNonePrivileges required: The attacker does not need an account or existing privileges.UIRequiredUser interaction: Another user must perform an action for exploitation to succeed.SUnchangedScope: The security impact remains within the vulnerable component's authority.CHighConfidentiality impact: A successful attack can cause a major loss.IHighIntegrity impact: A successful attack can cause a major loss.AHighAvailability impact: A successful attack can cause a major loss.
Post-exploitation / living off the land
No specific living-off-the-land technique is confirmed in the structured sources. Monitor normal administration tools for activity inconsistent with the affected service's baseline.
NetworkUnauthenticatedCWE-119CISA KEV
A

Official authority intelligence

Only matched European and national findings are included. Language selectors and unavailable sources are omitted.

ENISA EUVD · EUVD-2025-203113Known-exploited evidence recorded

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

Official EUVD record ↗
BSI · German · WID-SEC-2025-2838Apple macOS: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um seine Privilegien zu erhöhen, um Informationen offenzulegen, um einen Denial of Service Angriff durchzuführen, um Sicherheitsvorkehrungen zu umgehen, und um beliebigen Programmcode auszuführen.

Official advisory ↗
BSI · German · WID-SEC-2026-0403Apple macOS Tahoe, Sequoia und Sonoma: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um Administratorrechte zu erlangen, beliebigen Code auszuführen, einen Denial-of-Service-Zustand herbeizuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder andere nicht näher spezifizierte Angriffe durchzuführen.

Official advisory ↗
BSI · German · WID-SEC-2026-0402Apple iOS und iPadOS: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in Apple iOS und Apple iPadOS ausnutzen, um Administratorrechte zu erlangen, beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu verursachen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder andere nicht näher spezifizierte Angriffe durchzuführen.

Official advisory ↗
BSI · German · WID-SEC-2025-2836Apple iOS und iPadOS: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in Apple iOS und Apple iPadOS ausnutzen, um sich erhöhte Berechtigungen zu verschaffen – inklusive Root-Rechten –, um Denial-of-Service-Angriffe oder Speicherbeschädigungen durchzuführen, um Spoofing-Angriffe durchzuführen, um Informationen offenzulegen, um beliebigen Code auszuführen oder um andere, nicht näher spezifizierte Angriffe durchzuführen.

Official advisory ↗
BSI · German · WID-SEC-2025-2837Apple Safari: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in Apple Safari ausnutzen, um beliebigen Programmcode auszuführen, einen Denial-of-Service-Zustand zu verursachen, vertrauliche Informationen offenzulegen, Speicherbeschädigungen durchzuführen und andere, nicht spezifizierte Angriffe durchzuführen.

Official advisory ↗
BSI · German · WID-SEC-2025-2814Google Chrome/Microsoft Edge: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff

Ein Angreifer kann mehrere Schwachstellen in Google Chrome/Microsoft Edge ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.

Official advisory ↗
Canadian Centre for Cyber Security · English · AV25-832Microsoft Edge security advisory (AV25-832)

On December 11, 2025, Microsoft published a security update to address vulnerabilities in the following product: Microsoft has indicated that CVE-2025-14174 has an available exploit.

Official advisory ↗
Canadian Centre for Cyber Security · English · AV25-837Apple security advisory (AV25-837)

On December 12, 2025, Apple published a security update to address vulnerabilities in the following products: Apple is aware that CVE-2025-14174 and CVE-2025-43529 are being exploited.

Official advisory ↗
CERT-FR · French · CERTFR-2026-AVI-0627Multiples vulnérabilités dans les produits Splunk

rd?id=CVE-2025-0938 Référence CVE CVE-2025-11143 https://www.cve.org/CVERecord?id=CVE-2025-11143 Référence CVE CVE-2025-11187 https://www.cve.org/CVERecord?id=CVE-2025-11187 Référence CVE CVE-2025-11226 https://www.cve.org/CVERecord?id=CVE-2025-11226 Référence CVE CVE-2025-11468 https://www.cve.org/CVERecord?id=CVE-2025-11468 Référence CVE CVE-2025-12084 https://www.cve.org/CVERecord?id=CVE-2025-12084 Référence CVE CVE-2025-12183 https://www.cve.org/CVERecord?id=CVE-2025-12183 Référence CVE CVE-2025-13151 https://www.cve.org/CVERecord?id=CVE-2025-13151 Référence CVE CVE-2025-13836 https://www.cve.org/CVERecord?id=CVE-2025-13836 Référence CVE CVE-2025-14174 https://www.cve.org/CVERecord?id=CVE-2025-14174 Référence CVE CVE-2025-14819 https://www.cve.org/CVERecord?id=CVE-2025-14819 Référence CVE CVE-2025-14831 https://www.cve.org/CVERecord?id=CVE-2025-14831 Référence CVE CVE-2025-15282 https://www.cve.org/CVERecord?id=CVE-2025-15282 Référence CVE CVE-2025-15467 https://www.cve.org/CVERecord?id=CVE-2025-15467 Référence CVE CVE-2025-15468 https://www.cve.org/CVERecord?id=CVE-2025-15468 Référence CVE CVE-2025-1795 https://www.cve.org/CVERecord?id=CVE-2025-1795 Référence CVE CVE-2025-1948 https://www.cve.org/CVERecord?id=CVE-2025-1948 Référence CVE CVE-2025-22868 https://www.cve.org/CVERecord?id=CVE-

Official advisory ↗
CERT-FR · French · CERTFR-2026-AVI-0158Multiples vulnérabilités dans les produits Apple

de sécurité Apple 126348 du 11 février 2026 https://support.apple.com/en-us/126348 Bulletin de sécurité Apple 126349 du 11 février 2026 https://support.apple.com/en-us/126349 Bulletin de sécurité Apple 126350 du 11 février 2026 https://support.apple.com/en-us/126350 Bulletin de sécurité Apple 126351 du 11 février 2026 https://support.apple.com/en-us/126351 Bulletin de sécurité Apple 126352 du 11 février 2026 https://support.apple.com/en-us/126352 Bulletin de sécurité Apple 126353 du 11 février 2026 https://support.apple.com/en-us/126353 Bulletin de sécurité Apple 126354 du 11 février 2026 https://support.apple.com/en-us/126354 Référence CVE CVE-2025-14174 https://www.cve.org/CVERecord?id=CVE-2025-14174 Référence CVE CVE-2025-43338 https://www.cve.org/CVERecord?id=CVE-2025-43338 Référence CVE CVE-2025-43402 https://www.cve.org/CVERecord?id=CVE-2025-43402 Référence CVE CVE-2025-43403 https://www.cve.org/CVERecord?id=CVE-2025-43403 Référence CVE CVE-2025-43417 https://www.cve.org/CVERecord?id=CVE-2025-43417 Référence CVE CVE-2025-43529 https://www.cve.org/CVERecord?id=CVE-2025-43529 Référence CVE CVE-2025-43533 https://www.cve.org/CVERecord?id=CVE-2025-43533 Référence CVE CVE-2025-43537 https://www.cve.org/CVERecord?id=CVE-2025-43537 Référence CVE CVE-2025-46283 https://www.cve.org/CVERecord?id=

Official advisory ↗
CERT-FR · French · CERTFR-2026-AVI-0049Multiples vulnérabilités dans les produits Palo Alto Networks

d?id=CVE-2025-13634 Référence CVE CVE-2025-13635 https://www.cve.org/CVERecord?id=CVE-2025-13635 Référence CVE CVE-2025-13636 https://www.cve.org/CVERecord?id=CVE-2025-13636 Référence CVE CVE-2025-13637 https://www.cve.org/CVERecord?id=CVE-2025-13637 Référence CVE CVE-2025-13638 https://www.cve.org/CVERecord?id=CVE-2025-13638 Référence CVE CVE-2025-13639 https://www.cve.org/CVERecord?id=CVE-2025-13639 Référence CVE CVE-2025-13640 https://www.cve.org/CVERecord?id=CVE-2025-13640 Référence CVE CVE-2025-13720 https://www.cve.org/CVERecord?id=CVE-2025-13720 Référence CVE CVE-2025-13721 https://www.cve.org/CVERecord?id=CVE-2025-13721 Référence CVE CVE-2025-14174 https://www.cve.org/CVERecord?id=CVE-2025-14174 Référence CVE CVE-2025-14372 https://www.cve.org/CVERecord?id=CVE-2025-14372 Référence CVE CVE-2025-14373 https://www.cve.org/CVERecord?id=CVE-2025-14373 Référence CVE CVE-2025-14765 https://www.cve.org/CVERecord?id=CVE-2025-14765 Référence CVE CVE-2025-14766 https://www.cve.org/CVERecord?id=CVE-2025-14766 Référence CVE CVE-2026-0227 https://www.cve.org/CVERecord?id=CVE-2026-0227 Référence CVE CVE-2026-0628 https://www.cve.org/CVERecord?id=CVE-2026-0628 Gestion détaillée du document le 15 janvier 2026 Version initiale Alertes Avis Bulletins d’actualités Mentions légales Conditions générales À p

Official advisory ↗
CERT-FR · French · CERTFR-2025-AVI-1110Multiples vulnérabilités dans les produits Apple

res à 26.2 iPadOS versions 18.7.x antérieures à 18.7.3 iPadOS versions 26.x antérieures à 26.2 macOS Sequoia versions antérieures à 15.7.3 macOS Sonoma versions antérieures à 14.8.3 macOS Tahoe versions antérieures à 26.2 Safari versions antérieures à 26.2 tvOS versions antérieures à 26.2 visionOS versions antérieures à 26.2 watchOS versions antérieures à 26.2 Résumé De multiples vulnérabilités ont été découvertes dans les produits Apple. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance. Apple indique que les vulnérabilités CVE-2025-14174 et CVE-2025-43529 sont activement exploitées. Solutions Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation). Documentation Bulletin de sécurité Apple 125884 du 12 décembre 2025 https://support.apple.com/en-us/125884 Bulletin de sécurité Apple 125885 du 12 décembre 2025 https://support.apple.com/en-us/125885 Bulletin de sécurité Apple 125886 du 12 décembre 2025 https://support.apple.com/en-us/125886 Bulletin de sécurité Apple 125887 du 12 décembre 2025 https://support.apple.com/en-us/125887 Bulletin de sécurité Apple 125888 du 12 décembre 2025 https://support.apple.com/en-us/125888 Bulle

Official advisory ↗
CERT-FR · French · CERTFR-2025-AVI-1103Multiples vulnérabilités dans Microsoft Edge

De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

Official advisory ↗
CERT-FR · French · CERTFR-2025-AVI-1096Multiples vulnérabilités dans Google Chrome

De multiples vulnérabilités ont été découvertes dans Google Chrome. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

Official advisory ↗
JVN iPedia · Japanese · JVNDB-2025-022098Google の Google Chrome 等複数ベンダの製品における境界外書き込みに関する脆弱性

Google の Google Chrome 等複数ベンダの製品には、境界外書き込みに関する脆弱性が存在します。

Official advisory ↗
KISA KrCERT/CC · Korean · KNVD-6667MS 1월 보안 위협에 따른 정기 보안 업데이트 권고

ernel Subsystem | CVE-2025-24044 | Windows Win32 커널 하위 시스템 권한 상승 취약성 | | Windows Win32 Kernel Subsystem | CVE-2025-21367 | Windows Win32 커널 하위 시스템 권한 상승 취약성 | | Microsoft Edge (Chromium-based) | CVE-2025-14766 | Chromium: CVE-2025-14766 Use after free in WebGPU | | Microsoft Edge (Chromium-based) | CVE-2025-14765 | Chromium: CVE-2025-14765 Out of bounds read and write in V8 | | Microsoft Edge (Chromium-based) | CVE-2025-14373 | Chromium: CVE-2025-14373 Inappropriate implementation in Toolbar | | Microsoft Edge (Chromium-based) | CVE-2025-14372 | Chromium: CVE-2025-14372 Use after free in Password Manager | | Microsoft Edge (Chromium-based) | CVE-2025-14174 | Chromium: CVE-2025-14174 Out of bounds memory access in ANGLE | | Windows Motorola Soft Modem Driver | CVE-2024-55414 | Windows Motorola 소프트 모뎀 드라이버 권한 상승 취약성 | | Windows NT OS Kernel | CVE-2024-30099 | Windows 커널 권한 상승 취약성 | | Agere Windows Modem Driver | CVE-2023-31096 | MITRE: CVE-2023-31096 Windows Agere 소프트 모뎀 드라이버 권한 상승 취약성 | ##### □ 작성: 위협분석단 취약점분석팀

Official advisory ↗
KISA KrCERT/CC · Korean · KNVD-6649구글 Chrome 브라우저 보안 업데이트 권고

#### 구글 Chrome 브라우저 보안 업데이트 권고 2025.12.19 ##### □ 개요 o Google社는 자사 제품에서 발생하는 취약점을 해결한 보안 업데이트 발표 [1] o 영향받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고 ##### □ 설명 o Google Chrome의 ANGLE에서 발생하는 메모리 범위를 벗어난 접근 취약점(CVE-2025-14714) [1][2] ##### □ 영향받는 제품 및 해결 방안 | 취약점 | 제품명 | 영향받는 버전 | 해결 버전 | | --- | --- | --- | --- | | CVE-2025-14174 | Chrome (Windows) | 143.0.7499.109 미만 | 143.0.7499.109/.110 | | CVE-2025-14174 | Chrome (Mac) | 143.0.7499.109 미만 | 143.0.7499.109/.110 | | CVE-2025-14174 | Chrome (Linux) | 143.0.7499.109 미만 | 143.0.7499.109 | ※ 하단의 참고사이트를 확인하여 업데이트 수행 [1] ##### □ 참고사이트 [1] https://chromereleases.googleblog.com/2025/12/stable-channel-update-for-desktop_10.html [2] https://nvd.nist.gov/vuln/detail/CVE-2025-14174 ##### □ 문의사항 o 한국인터넷진흥원 사이버민원센터: 국번없이 118 ##### □ 작성: 위협분석단 취약점분석팀 --- 키워드 [Chrome](https://knvd.krcert.or.kr/keywordResult?searchOption=KEYWORD&content=Chrome)

Official advisory ↗
KISA KrCERT/CC · Korean · KNVD-6645美 CISA 발표 주요 Exploit 정보공유(Update. 2025-12-12)

Google Chromium contains an out of bounds memory access vulnerability in ANGLE that could allow a remote attacker to perform out of bounds memory access via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Official advisory ↗
NCSC-NL · Dutch · NCSC-2026-0064Kwetsbaarheden verholpen in Apple iOS en iPadOS

The webkit2gtk3 update to version 2.50.4 addresses multiple security vulnerabilities, including memory corruption and buffer overflow, while a high-severity out of bounds memory access vulnerability in ANGLE affects Google Chrome and other Chromium-based browsers.

Official advisory ↗
NCSC-NL · Dutch · NCSC-2026-0063Kwetsbaarheden verholpen in Apple macOS

The webkit2gtk3 update to version 2.50.4 addresses multiple security vulnerabilities, including memory corruption and buffer overflow, while a high-severity out of bounds memory access vulnerability in ANGLE affects Google Chrome and other Chromium-based browsers.

Official advisory ↗
NCSC-NL · Dutch · NCSC-2025-0397Kwetsbaarheden verholpen in Apple iOS en iPadOS

Google Chromium has multiple vulnerabilities, including a high-severity out of bounds memory access in ANGLE affecting various browsers, alongside resolved use-after-free and memory corruption issues.

Official advisory ↗
NCSC-NL · Dutch · NCSC-2025-0396Kwetsbaarheden verholpen in Apple macOS

Google Chromium has multiple vulnerabilities, including a high-severity out of bounds memory access in ANGLE affecting various browsers, alongside resolved use-after-free and memory corruption issues.

Official advisory ↗
03

Patch and workaround

Operational remediation based on structured source evidence.

Status
?Patch availability is based on structured fixed-version fields and authoritative update references. If no fix is verified, check the vendor advisory before making a change.
Fix availability varies by product
Affected
Chrome: 143.0.7499.110 < 143.0.7499.110
Fixed
No fixed version is explicitly recorded in the structured CVE data.
Action
Use the product-specific evidence above. Patch only products with a verified fixed release, and keep every affected or under-investigation state without a matching fix in the remediation queue.
Workaround
No verified workaround is recorded. If business-safe, reduce exposure to the affected interface and allow only trusted sources until authoritative guidance is available.
Official vendor articles3 stored documents

Linked articles are downloaded and versioned as source evidence. A CVE mention or approved update relationship does not, by itself, verify a fix for every product branch.

04

Evidence and provenance

Published 12 Dec 2025 · Last source change 21 Sept 2026, 12:59 UTC · CWE-119 · Improper Restriction of Operations within the Bounds of a Memory Buffer

CVE recordCVE.org · 5.2
CVSS sourceCISA ADP
EPSS source
?The date BlackTree first stored a score for this CVE from the daily FIRST EPSS feed.
FIRST · tracked since 2026-08-14
European sourceENISA EUVD · EUVD-2025-203113
Product sourceCISA KEV
Remediation sourceCVE/CNA references
CWE sourceCISA ADP
NVD statusNVD enriched

Core structured fields are present and their contributing authorities are shown above.

Material change intelligence

What changed after publication

View recent updates ↗
  1. Vendor guidanceAuthoritative vendor guidance changed: removed remediation: cyber.gc.ca/apple-security-advisory-av25-837.
    Before
    remediation: cyber.gc.ca/apple-security-advisory-av25-837
    After
    no authoritative guidance recorded
    CISA KEV ↗
  2. Remediation statusRemediation status changed from Mitigation available to Awaiting fix.
    Before
    Mitigation available
    After
    Awaiting fix
    CISA KEV ↗
  3. Vendor guidanceAuthoritative vendor guidance changed: removed remediation: cyber.gc.ca/apple-security-advisory-av25-837.
    Before
    remediation: cyber.gc.ca/apple-security-advisory-av25-837
    After
    no authoritative guidance recorded
    CISA KEV ↗
  4. Remediation statusRemediation status changed from Mitigation available to Awaiting fix.
    Before
    Mitigation available
    After
    Awaiting fix
    CISA KEV ↗
  5. Affected versionsThe structured affected or fixed version information changed.
    Before
    143.0.7499.110 < 143.0.7499.110 · Fixed: No fixed version is explicitly recorded in the structured CVE data.
    After
    Chrome: 143.0.7499.110 < 143.0.7499.110 · Fixed: No fixed version is explicitly recorded in the structured CVE data.
    CNA ↗
  6. Remediation statusRemediation status changed from Awaiting fix to Mitigation available.
    Before
    Awaiting fix
    After
    Mitigation available
    Canadian Centre for Cyber Security ↗
Material fields only · duplicate refreshes suppressed · history retained for the configured operational retention period
Technical terms and abbreviations used in this report
CVE
Common Vulnerabilities and Exposures: the public identifier for one disclosed vulnerability.
CVSS
Common Vulnerability Scoring System: a technical severity framework; it is not patching priority by itself.
EPSS
Exploit Prediction Scoring System: FIRST's estimate of the probability that exploitation activity will be observed in the next 30 days; it is a forecast, not confirmation.
CWE
Common Weakness Enumeration: the standard category describing the underlying software or hardware weakness.
CNA
CVE Numbering Authority: an organisation authorised to assign and publish CVE records.
CISA ADP
Cybersecurity and Infrastructure Security Agency Authorized Data Publisher: structured enrichment added to a CVE record.
NVD
National Vulnerability Database: NIST's enrichment service for CVE records.
CERT / CSIRT
A computer security incident response team that publishes warnings or coordinates incident response.
PoC
Proof of concept: public material that demonstrates or helps reproduce exploitation.
CSAF
Common Security Advisory Framework: a machine-readable format for security advisories.
LoTL
Living off the land: abuse of legitimate tools or system functions during an attack.
Free version - for non-commercial use only.CVE-2025-14174 · cve.blacktree.nl