Vulnerability Description
Permissions Bypass in Extension Management in Google ChromeOS 16181.27.0 on managed Chrome devices allows a local attacker to disable extensions and access Developer Mode, including loading additional extensions via exploiting vulnerabilities using the ExtHang3r and ExtPrint3r tools.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chrome Os | 16181.27.0 |
Related Weaknesses (CWE)
References
- https://issues.chromium.org/issues/b/399652193Broken Link
- https://issuetracker.google.com/issues/399652193ExploitIssue Tracking
FAQ
What is CVE-2025-6179?
CVE-2025-6179 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Permissions Bypass in Extension Management in Google ChromeOS 16181.27.0 on managed Chrome devices allows a local attacker to disable extensions and access Developer Mode, including loading ad...
How severe is CVE-2025-6179?
CVE-2025-6179 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2025-6179?
Check the references section above for vendor advisories and patch information. Affected products include: Google Chrome Os.