Disclosed Chromium Security Bugs

Security: Double-free in libwebp WebPEncode (with alpha) under OOM condition

#40063285Reporter: su...@gmail.com
$0
6/9/2023

Negative-size-param in void v8::internal::WriteFixedArrayToFlat

#40063327Reporter: cl...@chromium.org
$0
6/9/2023

Crash in v8::internal::JSArray::ArrayJoinConcatToSequentialString

#40063333Reporter: cl...@chromium.org
$0
6/9/2023

Heap-use-after-free in BookmarkBubbleView::BookmarkBubbleDelegate::ShowEditor

#40063334Reporter: cl...@chromium.org
$0
6/9/2023

DCHECK failure in Heap::InToPage(heap_object) in mark-compact.cc

#40063345Reporter: cl...@chromium.org
$0
6/9/2023

AddressSanitizer: heap-use-after-free in blink::NetworkStateNotifier::NotifyObserversOnTaskRunner

#40058195Reporter: dm...@gmail.com
$2,000
6/7/2023

Security DCHECK failed: !NeedsLayout() || ChildLayoutBlockedByDisplayLock() in layout_object.h

#40063160Reporter: cl...@chromium.org
$0
6/7/2023

Out of bound write in GPU

#40061476Reporter: ha...@gmail.com
$15,000
6/6/2023

Insufficient fix for Cross-Origin (Partial) Status Code leak (XS-Leak)

#40062152Reporter: ku...@googlemail.com
$1,000
6/6/2023

Security: Heap-buffer-overflow in FrameSinkManagerImpl::UnregisterFrameSinkHierarchy

#40062970Reporter: me...@gmail.com
$5,000
6/6/2023
Showing 4621-4630 of 10808 bugs