|
197391
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in Blink in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-6473
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197392
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive inf…
|
NVD-CWE-noinfo
|
CVE-2020-6472
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197393
|
9.6 |
CRITICAL
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6471
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197394
|
6.1 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient validation of untrusted input in clipboard in Google Chrome prior to 83.0.4103.61 allowed a local attacker to inject arbitrary scripts or HTML (UXSS) via crafted clipboard contents.
|
CWE-79
Cross-site Scripting
|
CVE-2020-6470
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197395
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6469
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197396
|
8.8 |
HIGH
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux leap backports_sle
|
Type confusion in V8 in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-843
Out-of-bounds Write Type Confusion
|
CVE-2020-6468
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197397
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in WebRTC in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-6467
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197398
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in media in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6466
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197399
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in reader mode in Google Chrome on Android prior to 83.0.4103.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafte…
|
CWE-416
Use After Free
|
CVE-2020-6465
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197400
|
8.8 |
HIGH
Network
|
google debian opensuse
|
chrome debian_linux leap
|
Type confusion in Blink in Google Chrome prior to 81.0.4044.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-843
Out-of-bounds Write Type Confusion
|
CVE-2020-6464
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|