|
196321
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Side-channel information leakage in scroll to text in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-6531
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196322
|
8.8 |
HIGH
Network
|
google opensuse fedoraproject debian
|
chrome leap backports_sle fedora debian_linux
|
Out of bounds memory access in developer tools in Google Chrome prior to 84.0.4147.89 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6530
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196323
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged network position to leak cross-origin data via a crafted HTML page.
|
CWE-295
Improper Certificate Validation
|
CVE-2020-6529
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196324
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Incorrect security UI in basic auth in Google Chrome on iOS prior to 84.0.4147.89 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6528
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196325
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass content security policy via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6527
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196326
|
6.5 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Inappropriate implementation in iframe sandbox in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6526
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196327
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6525
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196328
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Heap buffer overflow in WebAudio in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6524
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196329
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Out of bounds write in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2020-6523
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196330
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6522
|
2024-11-21 14:35 |
2020-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|