You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
chromoting race condition
About this tag
The chromoting race condition tag covers a specific Windows-only vulnerability in Chrome's Chromoting component, disclosed as CVE-2026-7948. This race condition, present before Chromium version 148.0.7778.96, allows a local attacker to escalate privileges through a malicious file. While Chromium rates it Medium, CISA assigns a CVSS 3.1 score of 7.5 (High), highlighting its significance for post-exploitation scenarios. Discussions on WindowsForum.com focus on the technical details, the severity mismatch, and implications for enterprise security. The tag is relevant for IT administrators and security professionals managing Chrome deployments on Windows, particularly those concerned with local privilege escalation risks.
Google and the Chromium project disclosed CVE-2026-7948 on May 6, 2026, describing a Windows-only race condition in Chrome’s Chromoting component before version 148.0.7778.96 that could let a local attacker escalate privileges through a malicious file. The vulnerability is rated Medium by...