CyberRota Analysis
AI-GeneratedGoogle Chrome versions prior to 152.0.7977.65 are vulnerable due to incorrect authorization in the USB handling component, allowing remote attackers to execute arbitrary code outside the sandbox by exploiting a compromised renderer process through social engineering tactics. This vulnerability poses a significant risk to users, particularly in environments where malicious web content may be encountered. Organizations using affected Chrome versions should prioritize updates to mitigate potential exploitation.
Original NVD Description
Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Related CVEs
Other vulnerabilities affecting the same vendor(s)