Disclosed Chromium Security Bugs

Security: [WebGL2/Mali] Heap-buffer-overflow in WebGL2 Shader compilation on Android

#40063287Reporter: ti...@chromium.org
$0
10/17/2023

UAF in media_router::IssuesObserver::~IssuesObserver()

#40066368Reporter: em...@gmail.com
$5,000
10/17/2023

Race Condition UAF in KVM_DEV_VFIO_GROUP

#40066811Reporter: sh...@gmail.com
$9,500
10/17/2023

DCHECK failure in !HAS_WEAK_HEAP_OBJECT_TAG(ptr_) in tagged-impl-inl.h

#40066925Reporter: cl...@chromium.org
$0
10/17/2023

DCHECK failure in constant.is_int64() in instruction-selector-x64.cc

#40067077Reporter: cl...@chromium.org
$0
10/17/2023

DCHECK failure in index < parameter_count_ in signature.h

#40067086Reporter: cl...@chromium.org
$0
10/17/2023

DCHECK failure in end.valid() in graph.h

#40067106Reporter: cl...@chromium.org
$0
10/17/2023

DCHECK failure in chunk->Contains(slot_addr) in remembered-set.h

#40067178Reporter: cl...@chromium.org
$0
10/17/2023

chrome.devtools.inspectedWindow.reload can run scripts on the Chrome Web Store

#40065258Reporter: ma...@gmail.com
$3,000
10/16/2023

chrome.devtools.inspectedWindow origin limitations are very broken and can be bypassed

#40066798Reporter: ma...@gmail.com
$1,000
10/16/2023
Showing 4211-4220 of 10765 bugs