Disclosed Chromium Security Bugs

Security DCHECK failure: num_chars <= length() in segmented_string.cc

#40060654Reporter: cl...@chromium.org
$0
11/30/2022

Security: heap-use-after-free in CaptureModeController::CaptureImage

#40060655Reporter: yo...@snu.ac.kr
$1,000
11/30/2022

Crash in blink::LayoutObjectChildList::RemoveChildNode

#40060658Reporter: cl...@chromium.org
$0
11/30/2022

Security: CDP Runtime.queryObjects leaks internal objects in JS heap, allowing CDP clients to compromise V8 process

#40058575Reporter: ku...@gmail.com
$1,000
11/29/2022

Security: v8: corrupt typed array from bad deserializer input

#40060077Reporter: in...@bnoordhuis.nl
$15,000
11/29/2022

libwebp_enc_dec_api_fuzzer: Heap-buffer-overflow in VP8LHashChainFill

#40060390Reporter: cl...@chromium.org
$0
11/29/2022

Security: Use After Free of Device object in GPU process.

#40060580Reporter: lo...@gmail.com
$17,000
11/29/2022

v8_inspector_fuzzer: DCHECK failure in maybe_result.is_null() in microtask-queue.cc

#40060634Reporter: cl...@chromium.org
$0
11/29/2022

Security: heap-use-after-free third_party/wayland/src/src/wayland-server.c:799:17 in wl_resource_set_user_data (ChromeOS Lacros)

#40060324Reporter: rh...@gmail.com
$0
11/28/2022

Security: Download notification can hide 'Press Esc to exit fullscreen' warning

#40060572Reporter: ch...@gmail.com
$3,000
11/25/2022
Showing 5251-5260 of 10856 bugs