Disclosed Chromium Security Bugs

Security: bypass of CSP validator to run remote code in extensions

#40051270Reporter: ro...@robwu.nl
$3,000
3/28/2023

Heap-use-after-free in blink::AXObject::ComputeIsInertViaStyle

#40061994Reporter: cl...@chromium.org
$0
3/28/2023

CHECK failure: !control->Is() in maglev-regalloc.cc

#40062301Reporter: cl...@chromium.org
$0
3/28/2023

CHECK failure: is_backed_by_rab == typed_array->is_backed_by_rab() in value-serializer.cc

#40062312Reporter: cl...@chromium.org
$0
3/28/2023

Use-of-uninitialized-value in v8::sampler::SamplerManager::DoSample

#40062198Reporter: cl...@chromium.org
$0
3/27/2023

2 vulnerabilities reported in /third_party/libxml

#40062283Reporter: se...@oss-vdb.iam.gserviceaccount.com
$0
3/27/2023

CHECK failure: non_atomic_marking_state()->IsWhite(obj) in mark-compact.cc

#40062303Reporter: cl...@chromium.org
$0
3/27/2023

Segv on unknown address in v8::internal::Heap::ExternalStringTable::TearDown

#40062304Reporter: cl...@chromium.org
$0
3/27/2023

CHECK failure: untyped_->count(slot.address()) > 0 in heap-verifier.cc

#40062305Reporter: cl...@chromium.org
$0
3/27/2023

wolfssl:fuzzer-wolfssl-server-randomize: Use-of-uninitialized-value in fuzzer_send

#42522715Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
3/26/2023
Showing 4801-4810 of 10808 bugs