ISN 2025-37: Critical Chromium Vulnerability
First published 2 September 2025
CVSS:3.1: N/A - Critical
CVSS:3.1/N/A
Summary
A security vulnerability has been found in Chromium, a web browser used in IGEL OS. This affects the following product versions:
IGEL OS 12
IGEL OS 11
Details
A use-after-free vulnerability has been found in the ANGLE (Almost Native Graphics Layer Engine) component. This can crash the application or enable the execution of arbitrary code. It is tracked as CVE-2025-9478 and rated critical.
Update Instructions
OS 12: Update to the Chromium app in version 139.0.7258.154 or newer when available from the IGEL App Portal.
OS 11: Update to IGEL OS version 11.10.420 when available.
References
Chrome Releases Blog: https://chromereleases.googleblog.com/2025/08/stable-channel-update-for-desktop_26.html