Chrome Security Update Addressing 21 Vulnerabilities
The Chrome development team has announced the release of Chrome version 141.0.7390.54/55 to the stable channel for Windows, Mac, and Linux. This update will be rolled out progressively over the coming days and weeks.
The Chrome development team has announced the release of Chrome version 141.0.7390.54/55 to the stable channel for Windows, Mac, and Linux. This update will be rolled out progressively over the coming days and weeks.
This update addresses 21 security vulnerabilities of varying severity levels—high, medium, and low. External researchers have contributed significantly to these fixes, receiving rewards of up to $25,000. Users are strongly advised to update their browsers promptly to benefit from these security enhancements.
Chrome 141 addresses two high-severity heap buffer overflow issues and several medium-severity problems related to side-channel leaks, out-of-bounds reads, and improper implementations. These affect various components such as WebGPU, Video, Storage, Omnibox, Media, Tab, and V8.
Low-severity vulnerabilities in Storage and V8 are also resolved. Many external contributions were identified through advanced techniques including fuzzing, AddressSanitizer, MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity, libFuzzer, and AFL.
The Chrome development team has announced the release of Chrome version 141.0.7390.54/55 to the stable channel for Windows, Mac, and Linux.
Below is a summary of externally reported vulnerabilities, their severity, and associated rewards:
Reward: $25,000 | CVE: CVE-2025-11205 | Severity: High | Description: Heap buffer overflow in WebGPU Reward: $4,000 | CVE: CVE-2025-11206 | Severity: High | Description: Heap buffer overflow in Video Reward: $5,000 | CVE: CVE-2025-11207 | Severity: Medium | Description: Side-channel information leakage in Storage Reward: $3,000 | CVE: CVE-2025-11208 | Severity: Medium | Description: Inappropriate implementation in Media Reward: $3,000 | CVE: CVE-2025-11209 | Severity: Medium | Description: Inappropriate implementation in Omnibox Reward: $3,000 | CVE: CVE-2025-11210 | Severity: Medium | Description: Side-channel information leakage in Tab Reward: $3,000 | CVE: CVE-2025-11211 | Severity: Medium | Description: Out-of-bounds read in Media Reward: $2,000 | CVE: CVE-2025-11212 | Severity: Medium | Description: Inappropriate implementation in Media Reward: $1,000 | CVE: CVE-2025-11213 | Severity: Medium | Description: Inappropriate implementation in Omnibox Reward: N/A | CVE: CVE-2025-11215 | Severity: Medium | Description: Off-by-one error in V8 Reward: $1,000 | CVE: CVE-2025-11216 | Severity: Low | Description: Inappropriate implementation in Storage Reward: N/A | CVE: CVE-2025-11219 | Severity: Low | Description: Use-after-free in V8
The Chrome security team has also addressed numerous other issues through internal audits, fuzzing, and automated testing. These efforts enhance Chrome’s defenses against memory corruption and information leakage techniques.
Open Chrome and click the menu (⋮) in the top-right corner. Select Help > About Google Chrome . Chrome will automatically check for updates and install version 141. Restart the browser to apply the fixes.
Future updates on new features and major efforts will be published in upcoming Chrome and Chromium blog posts. Ensuring Chrome is up to date is essential for maintaining security against evolving threats. Users are encouraged to apply this update promptly to ensure a secure and reliable browsing experience.
Based on reporting by GBHackers.
