Disclosed Chromium Security Bugs

Security: stack-buffer-overflow in prepare_so_movs

#40064150Reporter: fi...@gmail.com
$7,000
8/9/2023

Fatal error in Type cast failed in CAST(args.GetReceiver()) at ../../src/builtins/builtins-call

#40064247Reporter: cl...@chromium.org
$0
8/9/2023

DCHECK failure in source_position_iterator_.code_offset() > offset in maglev-graph-builder.h

#40064334Reporter: cl...@chromium.org
$0
8/9/2023

Security: WebGPU D3D12 Descriptor Heap Issue Could Cause Unauthorized Memory Access

#40064351Reporter: br...@intel.com
$0
8/9/2023

file_path_fuzzer: Global-buffer-overflow in base::FilePath::HFSFastUnicodeCompare

#40063624Reporter: cl...@chromium.org
$0
8/8/2023

Fatal error in SimplifiedLoweringVerifierError: verified type Boolean of node #NUMBER:TypeGuard

#40063836Reporter: cl...@chromium.org
$0
8/8/2023

Security: UAF in DevToolsDataSource::OnLoadComplete

#40064142Reporter: 0x...@gmail.com
$3,000
8/8/2023

Security: heap-use-after-free in translate_tex

#40064179Reporter: fi...@gmail.com
$7,000
8/8/2023

DCHECK failure in HasValue() in maglev-graph-builder.h

#40064259Reporter: cl...@chromium.org
$0
8/8/2023

Crash in v8::internal::maglev::MaglevGraphBuilder::TryFindNextBranch

#40064284Reporter: cl...@chromium.org
$0
8/8/2023
Showing 4441-4450 of 10808 bugs