EIP-2026-115355

PRE-CVE

Google Chrome 80.0.3987.87 - Heap-Corruption Remote Denial of Service (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115355. PoCs published by Cem Onat Karagun.

AI-analyzed exploit summary This exploit demonstrates a heap corruption vulnerability in Google Chrome 80.0.3987.87, leading to a remote denial of service (DoS) via a crafted HTML file. The PoC triggers a segmentation fault by manipulating the `RangeFromBufferIndex` function in the Blink rendering engine.

Description

Google Chrome 80.0.3987.87 - Heap-Corruption Remote Denial of Service (PoC)

Exploits (1)

exploitdb WORKING POC
by Cem Onat Karagun · textdoswindows
https://www.exploit-db.com/exploits/48237

This exploit demonstrates a heap corruption vulnerability in Google Chrome 80.0.3987.87, leading to a remote denial of service (DoS) via a crafted HTML file. The PoC triggers a segmentation fault by manipulating the `RangeFromBufferIndex` function in the Blink rendering engine.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Google Chrome 80.0.3987.87
No auth needed
Prerequisites: Victim must visit a malicious webpage
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026