CVE-2025-11207
06.11.2025, 22:15
Side-channel information leakage in Storage in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: Medium)Enginsight
| Vendor | Product | Version |
|---|---|---|
| chrome | 𝑥 < 141.0.7390.54 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration
- CWE-1300 - Improper Protection of Physical Side ChannelsThe device does not contain sufficient protection mechanisms to prevent physical side channels from exposing sensitive information due to patterns in physically observable phenomena such as variations in power consumption, electromagnetic emissions (EME), or acoustic emissions.
- CWE-125 - Out-of-bounds ReadThe software reads data past the end, or before the beginning, of the intended buffer.