Disclosed Chromium Security Bugs

boringssl_conf_fuzzer: Use-of-uninitialized-value in ASN1_template_free

#40062857Reporter: cl...@chromium.org
$0
5/13/2023

Use-after-poison in cppgc::internal::ConservativeTracingVisitor::TraceConservativelyIfNeeded

#40062872Reporter: cl...@chromium.org
$0
5/13/2023

Security: Hide real extension of file by many white spaces via suggestedName parameter - showSaveFilePicker

#40060615Reporter: ha...@gmail.com
$1,000
5/10/2023

Security: stack-use-after-scope in dawn::native::CommandEncoder::BeginRenderPass

#40061945Reporter: 0x...@gmail.com
$10,000
5/10/2023

Heap Buffer Overflow in AudioWorkletProcessor::ClonePortTopology

#40062369Reporter: em...@gmail.com
$7,000
5/10/2023

UAF in blink::VideoFrameSubmitter::OnContextLost

#40062697Reporter: em...@gmail.com
$3,000
5/10/2023

DCHECK failure in old_.bytes_ >= bytes in array-buffer-sweeper.cc

#40062821Reporter: cl...@chromium.org
$0
5/10/2023

Crash in ProbeMemory

#40062838Reporter: cl...@chromium.org
$0
5/10/2023

Security: Heap-buffer-overflowREAD 1 in g_utf8_substring

#40062604Reporter: ja...@microsoft.com
$0
5/9/2023

Security DCHECK failure: IsA(from) in casting.h

#40062700Reporter: m....@gmail.com
$9,000
5/9/2023
Showing 4701-4710 of 10808 bugs