|
221751
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5857
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221752
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Insufficient policy enforcement in storage in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
|
CWE-20
Improper Input Validation
|
CVE-2019-5856
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221753
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-5855
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221754
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-5854
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221755
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-682
Incorrect Calculation
|
CVE-2019-5853
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221756
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-20
Improper Input Validation
|
CVE-2019-5852
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221757
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Use after free in WebAudio in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2019-5851
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221758
|
9.6 |
CRITICAL
Network
|
google
|
chrome
|
Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML pag…
|
CWE-416
Use After Free
|
CVE-2019-5850
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221759
|
8.1 |
HIGH
Network
|
google
|
chrome
|
Out of bounds read in Skia in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5849
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221760
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Incorrect font handling in autofill in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-5848
|
2024-11-21 13:45 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|