|
218811
|
8.8 |
HIGH
Network
|
google opensuse debian fedoraproject
|
chrome leap backports debian_linux fedora
|
Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-5821
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218812
|
8.8 |
HIGH
Network
|
google opensuse debian fedoraproject
|
chrome leap backports debian_linux fedora
|
Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-5820
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218813
|
7.8 |
HIGH
Local
|
google opensuse fedoraproject debian
|
chrome leap backports fedora debian_linux
|
Insufficient data validation in developer tools in Google Chrome on OS X prior to 74.0.3729.108 allowed a local attacker to execute arbitrary code via a crafted string copied to clipboard.
|
CWE-20 CWE-78
Improper Input Validation OS Command
|
CVE-2019-5819
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218814
|
6.5 |
MEDIUM
Network
|
google opensuse debian fedoraproject
|
chrome leap backports debian_linux fedora
|
Uninitialized data in media in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted video file.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-5818
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218815
|
8.8 |
HIGH
Network
|
google opensuse debian fedoraproject
|
chrome leap debian_linux fedora backports
|
Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5817
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218816
|
8.8 |
HIGH
Network
|
google opensuse fedoraproject
|
chrome leap fedora backports
|
Process lifetime issue in Chrome in Google Chrome on Android prior to 74.0.3729.108 allowed a remote attacker to potentially persist an exploited process via a crafted HTML page.
|
CWE-664
Improper Control of a Resource Through its Lifetime
|
CVE-2019-5816
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218817
|
6.5 |
MEDIUM
Network
|
google opensuse debian fedoraproject
|
chrome leap backports debian_linux fedora
|
Insufficient policy enforcement in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
|
CWE-352
Origin Validation Error
|
CVE-2019-5814
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218818
|
8.8 |
HIGH
Network
|
google opensuse debian fedoraproject
|
chrome leap debian_linux fedora backports
|
Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2019-5813
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218819
|
6.5 |
MEDIUM
Network
|
google fedoraproject
|
chrome fedora
|
Inadequate security UI in iOS UI in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2019-5812
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218820
|
8.8 |
HIGH
Network
|
google opensuse debian fedoraproject
|
chrome leap debian_linux fedora backports
|
Incorrect handling of CORS in ServiceWorker in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2019-5811
|
2024-11-21 13:45 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|