CVE-2025-6558
Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?fieldcve=CVE-2025-6558, https://chromereleases.googleblog.com/2025/07/stable-channel-update-for-desktop15.html, http://seclists.org/fulldisclosure/2025/Aug/0, http://seclists.org/fulldisclosure/2025/Jul/30, http://seclists.org/fulldisclosure/2025/Jul/32, http://seclists.org/fulldisclosure/2025/Jul/35, http://seclists.org/fulldisclosure/2025/Jul/37, https://lists.debian.org/debian-lts-announce/2025/08/msg00015.html, https://issues.chromium.org/issues/427162086, http://www.openwall.com/lists/oss-security/2025/08/02/1, https://lists.debian.org/debian-lts-announce/2025/08/msg00015.html
