|
195401
|
4.3 |
MEDIUM
Network
|
google fedoraproject
|
chrome fedora
|
Inappropriate implementation in Skia in Google Chrome prior to 88.0.4324.146 allowed a local attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2021-21147
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195402
|
9.6 |
CRITICAL
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2021-21146
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195403
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2021-21145
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195404
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Heap buffer overflow in Tab Groups in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a craft…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21144
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195405
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Heap buffer overflow in Extensions in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a craft…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21143
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195406
|
9.6 |
CRITICAL
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2021-21142
|
2024-11-21 14:47 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195407
|
6.5 |
MEDIUM
Network
|
google microsoft
|
chrome edge
|
Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass file extension policy via a crafted HTML page.
|
CWE-74
Injection
|
CVE-2021-21141
|
2024-11-21 14:47 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195408
|
6.8 |
MEDIUM
Physics
|
google microsoft
|
chrome edge
|
Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of bounds memory access via via a USB device.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2021-21140
|
2024-11-21 14:47 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195409
|
6.5 |
MEDIUM
Network
|
google microsoft
|
chrome edge_chromium
|
Inappropriate implementation in iframe sandbox in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2021-21139
|
2024-11-21 14:47 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195410
|
8.6 |
HIGH
Local
|
google
|
chrome
|
Use after free in DevTools in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform a sandbox escape via a crafted file.
|
CWE-416
Use After Free
|
CVE-2021-21138
|
2024-11-21 14:47 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|