【漏洞通报】CNNVD关于Google Chrome安全漏洞的通报
摘要
近日,国家信息安全漏洞库(CNNVD)收到关于Google Chrome安全漏洞(CNNVD-202606-1877、CVE-2026-11645)情况的报送。成功利用漏洞的攻击者可实现远程代码执行,进而控制目标设备。Google Chrome多个版本均受此漏洞影响。目前,谷歌官方已发布新版本修复了漏洞,建议用户及时确认产品版本,尽快采取修补措施。 一、漏洞介绍 Google Chrome是美国谷
正文
<h2 style="margin: 0cm; mso-add-space: auto; text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%;"><span style="font-size: 12.0pt; line-height: 150%; color: #333333; font-weight: normal;">近日,国家信息安全漏洞库(<span>CNNVD</span>)收到关于<span>Google Chrome</span>安全漏洞(<span>CNNVD-202606-1877</span>、<span>CVE-2026-11645</span>)情况<a rel="nofollow"></a>的报送。成功利用漏洞的攻击者可实现远程代码执行,进而控制目标设备。<span>Google Chrome</span>多个版本均受此漏洞影响。目前,谷歌官方已发布新版本修复了漏洞,建议用户及时确认产品版本,尽快采取修补措施。</span></h2> <p class="MsoNormal" style="mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-add-space: auto; line-height: 150%; mso-pagination: widow-orphan;"><strong><span style="font-size: 12.0pt; line-height: 150%; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt;">一、漏洞介绍</span></strong></p> <pre style="text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%; background: white;"><span style="color: #333333;">Google Chrome</span><span style="color: #333333;">是美国谷歌(<span>Google</span>)公司的一款<span>Web</span>浏览器。<span>Google Chrome</span>存在一个安全漏洞,攻击者可通过构造恶意网页触发漏洞,进而绕过沙箱防护实现远程代码执行。 </span></pre> <p class="MsoNormal" style="mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-add-space: auto; line-height: 150%; mso-pagination: widow-orphan;"><strong><span style="font-size: 12.0pt; line-height: 150%; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt;">二、危害影响</span></strong></p> <pre style="text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%; background: white;"><span style="color: #333333;">Google Chrome(Linux) 149.0.7827.102</span><span style="color: #333333;">之前版本、<span>Google Chrome(Windows) 149.0.7827.102</span>之前版本、<span>Google Chrome (Mac) 149.0.7827.103</span>之前版本均受此漏洞影响。</span></pre> <p class="MsoNormal" style="mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-add-space: auto; line-height: 150%; mso-pagination: widow-orphan;"><strong><span style="font-size: 12.0pt; line-height: 150%; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt;">三、修复建议</span></strong></p> <pre style="text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%; background: white;"><span style="color: #333333;">目前,谷歌官方已发布新版本修复了漏洞,建议用户及时确认产品版本,尽快采取修补措施。官方升级链接如下:</span></pre> <pre style="text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%; background: white;"><span style="color: #333333;">https://www.google.cn/chrome/</span></pre> <p class="MsoNormal" style="mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-add-space: auto; text-indent: 24.0pt; mso-char-indent-count: 2.0; line-height: 150%; mso-pagination: widow-orphan;"><span style="font-size: 12.0pt; line-height: 150%; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt;">本通报由<span>CNNVD</span>技术支撑单位——奇安信网神信息技术(北京)股份有限公司、三六零数字安全科技集团有限公司、南京禾盾信息科技有限公司、杭州迪普科技股份有限公司、湖南智榜样教育科技有限公司、广州非凡信息安全技术有限公司、深信服科技股份有限公司、南京聚铭网络科技有限公司等技术支撑单位提供支持。</span></p> <p><span style="font-size: 12.0pt; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-bidi-language: AR-SA;"> CNNVD</span><span style="font-size: 12.0pt; font-family: 宋体; mso-bidi-font-family: 宋体; color: #333333; mso-font-kerning: 0pt; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-bidi-language: AR-SA;">将继续跟踪上述漏洞的相关情况,及时发布相关信息。如有需要,可与<span>CNNVD</span>联系。联系方式<span>: [email protected]</span></span></p>
标签
- cnnvd
- cnnvd_announcement
- cve:CVE-2026-11645
扩展字段
{
"create_uname": "zhangdan",
"detailed_create_user": "zhangdan",
"detailed_publish_time": "2026-06-10 16:12:40",
"detailed_warn_name": "【漏洞通报】CNNVD关于Google Chrome安全漏洞的通报",
"publish_time": "2026-06-10 16:12:40",
"warn_id": "6b48ae80626a4947b85400a69b1d91e7",
"warn_name": "【漏洞通报】CNNVD关于Google Chrome安全漏洞的通报"
}