CVE-2026-11146

Description

An insufficient validation of untrusted input flaw was found in the Chromoting component of the Chromium browser.

Upstream bug(s):

https://code.google.com/p/chromium/issues/detail?id=501709220

Statement

Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.

Understanding the Weakness (CWE)

Access Control,Integrity

Technical Impact: Bypass Protection Mechanism; Modify Application Data

An attacker could package untrusted data with trusted data to bypass protection mechanisms to gain access to and possibly modify sensitive data.

Frequently Asked Questions

Want to get errata notifications? Sign up here.