|
196421
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6469
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196422
|
8.8 |
HIGH
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux leap backports_sle
|
Type confusion in V8 in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-843
Out-of-bounds Write Type Confusion
|
CVE-2020-6468
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196423
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in WebRTC in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-6467
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196424
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in media in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6466
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196425
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in reader mode in Google Chrome on Android prior to 83.0.4103.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafte…
|
CWE-416
Use After Free
|
CVE-2020-6465
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196426
|
8.8 |
HIGH
Network
|
google debian opensuse
|
chrome debian_linux leap
|
Type confusion in Blink in Google Chrome prior to 81.0.4044.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-843
Out-of-bounds Write Type Confusion
|
CVE-2020-6464
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196427
|
8.8 |
HIGH
Network
|
google fedoraproject canonical debian opensuse
|
chrome fedora ubuntu_linux debian_linux leap backports_sle
|
Use after free in ANGLE in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-6463
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196428
|
9.6 |
CRITICAL
Network
|
google debian
|
chrome debian_linux
|
Use after free in task scheduling in Google Chrome prior to 81.0.4044.129 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML…
|
CWE-416
Use After Free
|
CVE-2020-6462
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196429
|
9.6 |
CRITICAL
Network
|
google debian
|
chrome debian_linux
|
Use after free in storage in Google Chrome prior to 81.0.4044.129 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6461
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196430
|
6.5 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
Insufficient data validation in URL formatting in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to perform domain spoofing via a crafted domain name.
|
NVD-CWE-noinfo
|
CVE-2020-6460
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|