Heap Corruption
The latest Heap Corruption coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2026-0861: Critical Glibc Memalign Vulnerability Threatens Linux & WSL Security
A newly disclosed high-severity vulnerability in the GNU C Library (glibc), tracked as CVE-2026-0861, exposes a critical integer overflow flaw in memory allocation routines that could lead to...
CVE-2025-14087: Critical GLib GVariant Heap Corruption Threatens Linux & Windows Apps
A newly disclosed critical vulnerability, CVE-2025-14087, has sent shockwaves through the open-source and Windows development communities, exposing a fundamental flaw in GLib's GVariant text parser...
CVE-2025-13230: Critical Chrome V8 Type Confusion Vulnerability Threatens Windows Users
A critical security vulnerability in Google's V8 JavaScript engine, tracked as CVE-2025-13230, has been discovered that could allow attackers to execute arbitrary code on affected systems through...
CVE-2025-7425: Critical Libxslt Heap Corruption Threatens Windows Apps & Browsers
A newly disclosed critical vulnerability in the widely used libxslt library, tracked as CVE-2025-7425, poses a significant security threat to countless Windows applications, web browsers, and...
CVE-2025-10200: Chrome 140 Patches ServiceWorker Use-After-Free, Edge Users Must Update Immediately
Google has shipped a critical patch for a use-after-free vulnerability in the ServiceWorker component of Chromium, tracked as CVE-2025-10200, with the release of Chrome version 140.0.7339.80/81 and...
Google Chrome 139.0.7258.127 Plugs Aura Use-After-Free (CVE-2025-8882) and Other High-Severity Bugs
Google has deployed a critical stable-channel update for Chrome, version 139.0.7258.127, closing a use-after-free vulnerability in the Aura UI component tracked as CVE-2025-8882. The patch also...
CVE-2025-8578: Chrome Cast Vulnerability Sparks Urgent Updates for Chrome and Edge
A critical use-after-free vulnerability in Google Chrome’s Cast component, tracked as CVE-2025-8578, has been patched by both Google and Microsoft, after researchers confirmed that attackers could...
Chrome 138.0.7204.183 Fixes Critical CVE-2025-8292 Use-After-Free Flaw in Media Stream
Google has rolled out Chrome version 138.0.7204.183 to address a high-severity security flaw that could let attackers hijack systems through nothing more than a malicious webpage. Tracked as...
Critical CVE-2025-8011 V8 JavaScript Engine Vulnerability Threatens Chromium-Based Browsers
A newly identified security vulnerability—CVE-2025-8011—has cast a spotlight on the importance of browser security, particularly for users of Google Chrome and its derivatives. At the heart of...
Critical Chrome Vulnerability CVE-2025-7657 in WebRTC: Risks, Impact, and Mitigation Strategies
A new high-severity vulnerability, tracked as CVE-2025-7657, has emerged as a serious threat in the cybersecurity landscape, specifically targeting Google Chrome’s WebRTC component. This critical...
Chrome Zero-Day CVE-2025-6555: Update Now to Block Active Attacks
A newly discovered critical vulnerability in Google Chrome, identified as CVE-2025-6555, has sent shockwaves through the cybersecurity community. This "use after free" flaw in Chrome's animation...
Critical CVE-2025-5958 Chromium Media Flaw: What You Need to Know
A newly discovered vulnerability in Chromium's Media component (CVE-2025-5958) has sent shockwaves through the cybersecurity community. This critical "use after free" flaw could allow attackers to...