Disclosed Chromium Security Bugs

libbpf:bpf-object-fuzzer: Heap-buffer-overflow in btf_ensure_modifiable

#42528261Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
9/17/2023

sql_recovery_fuzzer: Trap in std::Cr::__libcpp_verbose_abort

#40063769Reporter: cl...@chromium.org
$0
9/16/2023

Security: Custom Tab Scroll Inference

#40064099Reporter: ph...@gmail.com
$2,000
9/16/2023

Security: UAF in SaveUPIOfferBubbleViews::WindowClosing

#40064191Reporter: zh...@gmail.com
$6,000
9/15/2023

Security: destroying a SiteInstance can use-after-free the BrowserContext

#40064485Reporter: dc...@chromium.org
$0
9/15/2023

Security: IPCZ FragmentDescriptors are not validated.

#40065220Reporter: ma...@google.com
$0
9/15/2023

dawn_wire_server_and_vulkan_backend_fuzzer.exe: Crash in marl::Scheduler::Worker::runUntilIdle

#40065314Reporter: cl...@chromium.org
$0
9/15/2023

lightweight-heap-use-after-free : ui::AXTree::Destroy

#40065413Reporter: cr...@system.gserviceaccount.com
$0
9/15/2023

Security: TALOS-2023-1751 - Google Chrome VideoEncoder av1_svc_check_reset_layer_rc_flag use-after-free vulnerability

#40064728Reporter: vu...@sourcefire.com
$10,000
9/14/2023

Security: CVE-2016-10195

#40065443Reporter: he...@gmail.com
$0
9/14/2023
Showing 4291-4300 of 10765 bugs