VDB

DEBIAN-CVE-2026-7338

DEBIAN-CVE-2026-7338 PUBLISHED CVSS 7.5 HIGH

Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: High)

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Debian:13chromium0, 138.0.7204.183-1, 139.0.7258.127-1
Debian:12chromium139.0.7258.138-1~deb12u1, 139.0.7258.138-1~deb13u1, 139.0.7258.154-1
Debian:14chromium145.0.7632.116-1, 0, 138.0.7204.183-1
Debian:11chromium*, 0, 100.0.4896.127-1

Timeline

  • Apr 28, 2026 CVE Published
  • May 5, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›