|
209151
|
8.8 |
HIGH
Network
|
google opensuse fedoraproject debian
|
chrome backports_sle fedora debian_linux
|
Use after free in password manager in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML…
|
CWE-416
Use After Free
|
CVE-2020-15991
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209152
|
8.8 |
HIGH
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora backports_sle
|
Use after free in autofill in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-15990
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209153
|
5.5 |
MEDIUM
Local
|
google fedoraproject opensuse debian
|
chrome fedora backports_sle debian_linux
|
Uninitialized data in PDFium in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-15989
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209154
|
6.3 |
MEDIUM
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux backports_sle
|
Insufficient policy enforcement in downloads in Google Chrome on Windows prior to 86.0.4240.75 allowed a remote attacker who convinced the user to open files to execute arbitrary code via a crafted H…
|
NVD-CWE-noinfo
|
CVE-2020-15988
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209155
|
8.8 |
HIGH
Network
|
google fedoraproject opensuse debian
|
chrome fedora backports_sle debian_linux
|
Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC stream.
|
CWE-416
Use After Free
|
CVE-2020-15987
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209156
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora backports_sle debian_linux
|
Integer overflow in media in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-190 CWE-416
Integer Overflow or Wraparound Use After Free
|
CVE-2020-15986
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209157
|
6.5 |
MEDIUM
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux backports_sle
|
Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to spoof security UI via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-15985
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209158
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora backports_sle debian_linux
|
Insufficient policy enforcement in Omnibox in Google Chrome on iOS prior to 86.0.4240.75 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted URL.
|
NVD-CWE-noinfo
|
CVE-2020-15984
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209159
|
7.8 |
HIGH
Local
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux backports_sle
|
Insufficient data validation in webUI in Google Chrome on ChromeOS prior to 86.0.4240.75 allowed a local attacker to bypass content security policy via a crafted HTML page.
|
CWE-20
Improper Input Validation
|
CVE-2020-15983
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209160
|
6.5 |
MEDIUM
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux backports_sle
|
Inappropriate implementation in cache in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-15982
|
2024-11-21 14:06 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|