Chromium: CVE-2024-9602 Type Confusion in V8
Chromium: CVE-2024-3156 Inappropriate implementation in V8
Chromium: CVE-2024-3158 Use after free in Bookmarks
Chromium: CVE-2024-3159 Out of bounds memory access in V8
Chromium: CVE-2023-6702 Type Confusion in V8
Heap buffer overflow in WebP in Google Chrome prior to 116.0.5845.187 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
References: https://crbug.com/1479274 https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop11.html
Chromium: CVE-2024-11395 Type Confusion in V8
Chromium: CVE-2023-4428: Out of bounds memory access in CSS
Chromium: CVE-2023-4761 Out of bounds memory access in FedCM
Chromium: CVE-2024-0813 Use after free in Reading Mode
Chromium: CVE-2024-0807 Use after free in WebAudio
Chromium: CVE-2024-0806 Use after free in Passwords
Chromium: CVE-2024-0224 Use after free in WebAudio
Chromium: CVE-2024-0223 Heap buffer overflow in ANGLE
Chromium: CVE-2024-0222 Use after free in ANGLE
Chromium: CVE-2023-6347 Use after free in Mojo
Chromium: CVE-2024-0812 Inappropriate implementation in Accessibility
Chromium: CVE-2024-0804 Insufficient policy enforcement in iOS Security UI
Chromium: CVE-2024-0517 Out of bounds write in V8
Out of bounds write in Storage in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
Heap buffer overflow in Downloads in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Insufficient validation of untrusted input in V8 in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use after free in Browser Tag in Google Chrome prior to 105.0.5195.52 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
Use after free in Blink in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use after free in SwiftShader in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use after free in ANGLE in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use after free in PDF in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)
Use after free in PDF in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)
Use after free in Chrome OS Shell in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via specific UI interactions.
Use after free in Sign-In Flow in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via specific UI interaction.