BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Google Chrome Patches Zero-Day GPU Bug Exploited in the Wild

Google Patches Active Chrome Zero-Day Vulnerability CVE-2025-6558 Abused by Attackers

  • Google released patches for six security flaws in Chrome, including one critical zero-day vulnerability actively exploited.
  • The high-severity issue, CVE-2025-6558, allows attackers to bypass browser protections through a flaw in the ANGLE and GPU components.
  • The vulnerability can lead to a “Sandbox escape,” enabling remote attackers to access a user’s system through a malicious website.
  • Researchers from Google’s Threat Analysis Group identified the flaw, and reports suggest possible involvement of nation-state actors.
  • Users are advised to update Chrome and Chromium-based browsers immediately to stay protected.

On July 16, 2025, Google released security updates for its Chrome web browser to address six vulnerabilities, one of which has already been exploited by attackers. The most severe flaw, tracked as CVE-2025-6558, affects the browser’s handling of graphics operations and can enable attackers to break out of Chrome’s security protections.

- Advertisement -

According to the National Vulnerability Database, “Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.” The flaw was first reported by Clément Lecigne and Vlad Stolyarov of Google’s Threat Analysis Group (TAG) on June 23, 2025.

The ANGLE (Almost Native Graphics Layer Engine) component acts as a bridge between Chrome’s rendering processes and a computer’s graphics drivers. This vulnerability allows attackers to use a specially crafted website to break out of the browser’s restricted environment. “An exploit for CVE-2025-6558 exists in the wild,” Google confirmed in an official post, suggesting possible targeting by advanced attackers.

The company resolved a similar zero-day, CVE-2025-6554, two weeks earlier, also reported by Lecigne. In total, Google has patched five Chrome zero-day bugs so far this year, including CVE-2025-2783, CVE-2025-4664, CVE-2025-5419, and CVE-2025-6554.

Google recommends that users update their browsers to versions 138.0.7204.157 or .158 for Windows and macOS, and 138.0.7204.157 for Linux. Users should go to More > Help > About Google Chrome and select Relaunch to ensure the latest updates are installed. The fixes also apply to other Chromium-based browsers, such as Microsoft Edge, Brave, Opera, and Vivaldi when updates become available.

- Advertisement -

Security experts caution that vulnerabilities in browser graphics components often reappear in targeted attacks. They advise users to remain vigilant for further browser updates and security patches.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

OCC fines AmEx $350M over $13B money laundering

The OCC found American Express National Bank processed approximately $13 billion in suspected trade-based...

AnyDesk Linux pre-auth RCE exploit gives root access

Security researchers published AnyPwn, a working exploit for a pre-authentication remote code execution flaw...

CleanSpark Ends Monthly Bitcoin Reports, Cites Data Center Growth

CleanSpark produced 529 BTC in September, averaging 17.64 BTC per day, and holds 13,530...

China doc exposes pig butchering scam border horrors

China released a documentary series exposing pig butchering scams across Southeast AsiaNearly 100,000 law...

Qureshi Slams Drake’s ‘Bunker Mode’ as Crypto Doomerism

Dragonfly managing partner Haseeb Qureshi called Ethereum researcher Justin Drake’s “bunker mode” warning “cryptographic...

Must Read

8 Best Crypto Debit Cards For Spending Your Digital Tokens

What are | How we chose | Best crypto debit cards | Binance Card? | FAQ | Final WordsCrypto debit cards have transformed how...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading