Stable Channel Update for ChromeOS / ChromeOS Flex


The ChromeOS Stable channel is being updated to OS version 16371.49.0 (Browser version 140.0.7339.201) for most ChromeOS devices.

If you find new issues, please let us know one of the following ways:
  1. File a bug
  2. Visit our ChromeOS communities

    1. General: Chromebook Help Community

    2. Beta Specific: ChromeOS Beta Help Community

  3. Report an issue or send feedback on Chrome

  4. Interested in switching channels? Find out how.

Security Fixes and Rewards

Other 3rd Party Security Fixes Included:

High Fixes  CVE-2025-0932 Potential Use-after-free cmpbe_compile_gles_shader, reachable through WebGPU

Medium Fixes   eSIM vulnerability that could allow for unauthorized SIM cloning and interception.

Medium fixes CVE-2024-45332 CVE-2024-43420 CVE-2025-20623 Intel TA-01247 Indirect Branch Predictor Delayed Update (BPI)

High fixes CVE-2025-38349 use-after-free vulnerability with an attack surface on the epoll system call interface.

Android Security fixes can be found here

Chrome Browser Security Fixes:

[NA][445380761] High CVE-2025-10585: Type Confusion in V8. Reported by Google Threat Analysis Group on 2025-09-16

[$10000][440737137] High CVE-2025-10501: Use after free in WebRTC. Reported by sherkito on 2025-08-23
[$TBD] [434513380] High CVE-2025-9864 Use after free in V8. Reported by Pavel Kuzmin of Yandex Security Team on 2025-07-28 

[$4000.0] [379337758] Medium CVE-2025-9866 Inappropriate implementation in Extensions. Reported by NDevTK on 2024-11-16

[$43000.0] [440454442] Critical CVE-2025-10200 Use after free in Serviceworker. Reported by Looben Yang on 2025-08-22

[$30000.0] [439305148] High CVE-2025-10201 Inappropriate implementation in Mojo. Reported by Sahan Fernando & Anon on 2025-08-18




Luis Menezes

Google ChromeOS