Google fixes actively exploited sandbox escape zero day in Chrome

Google fixes actively exploited sandbox escape zero day in Chrome

Google has issued a critical security update for Chrome addressing six vulnerabilities, including an actively exploited sandbox escape flaw (CVE-2025-6558). These updates are essential to protect users from remote code execution and other potential threats targeting the browser’s security components. #CVE-2025-6558 #ANGLE #ChromeSecurityUpdate

Keypoints

  • Google released a security update for Chrome to fix six vulnerabilities.
  • The most critical vulnerability, CVE-2025-6558, was actively exploited to escape sandbox protections.
  • This flaw affects Chrome versions before 138.0.7204.157 and involves the ANGLE graphics engine.
  • Exploiters could use crafted HTML pages to execute arbitrary code in the GPU process.
  • Users are encouraged to update Chrome promptly to mitigate high-severity security risks.

Read More: https://www.bleepingcomputer.com/news/security/google-fixes-actively-exploited-sandbox-escape-zero-day-in-chrome/