CVE-2025-14174

HIGH KEV

Google Chrome <143.0.7499.110 - Memory Corruption

Title source: llm

Description

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

Exploits (6)

github WORKING POC 10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2025/CVE-2025-14174
nomisec WORKING POC 7 stars
by Satirush · poc
https://github.com/Satirush/CVE-2025-14174-Poc
nomisec WORKING POC 1 stars
by George0Papasotiriou · poc
https://github.com/George0Papasotiriou/CVE-2025-14174-Chrome-Zero-Day
github STUB
by SgtBattenHA · phppoc
https://github.com/SgtBattenHA/Analysis
nomisec WRITEUP
by typeconfused · client-side
https://github.com/typeconfused/CVE-2025-14174-analysis

Scores

CVSS v3 8.8
EPSS 0.0100
EPSS Percentile 77.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CISA KEV 2025-12-12
VulnCheck KEV 2025-12-12
ENISA EUVD EUVD-2025-203113
CWE
CWE-119 CWE-787
Status published
Products (9)
apple/ipados < 18.7.3
apple/iphone_os < 18.7.3
apple/macos < 26.2
apple/safari < 26.2
apple/tvos < 26.2
apple/visionos < 26.2
apple/watchos < 26.2
google/chrome 143.0.7499.41 - 143.0.7499.110
microsoft/edge_chromium < 143.0.3650.80
Published Dec 12, 2025
KEV Added Dec 12, 2025
Tracked Since Feb 18, 2026