CVE-2026-11021

Description

An insufficient validation of untrusted input flaw was found in the GPU component of the Chromium browser.

Upstream bug(s):

https://code.google.com/p/chromium/issues/detail?id=497487755

Statement

Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.

Understanding the Weakness (CWE)

Access Control,Integrity

Technical Impact: Bypass Protection Mechanism; Execute Unauthorized Code or Commands

An attacker could include dangerous input that bypasses validation protection mechanisms which can be used to launch various attacks including injection attacks, execute arbitrary code or cause other unintended behavior.

Frequently Asked Questions

Want to get errata notifications? Sign up here.