top of page
perceptive_background_267k.jpg

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to p…

Published:

29 July 2026 at 22:00:00

Alert date:

30 July 2026 at 18:03:11

Source:

nvd.nist.gov

Click to open the original link from this advisory

Mobile & IoT, Web Technologies, Zero-Day Vulnerabilities

CVE-2026-17676 is a high-severity vulnerability in Google Chrome for Android affecting versions prior to 151.0.7922.72. The flaw resides in ANGLE (Almost Native Graphics Layer Engine), a graphics abstraction layer used by Chrome. An inappropriate implementation allows a remote attacker who has already compromised the renderer process to potentially escape the browser sandbox. Exploitation is achieved via a specially crafted HTML page. The vulnerability is classified as High severity by the Chromium security team. Users are advised to update to Chrome 151.0.7922.72 or later to mitigate the risk. The issue has been patched and disclosed via the NVD and Chromium release channels.

Technical details

Mitigation steps:

Affected products:

Google Chrome for Android (prior to 151.0.7922.72)
ANGLE

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page