Disclosed Chromium Security Bugs

tint_ast_spv_writer_fuzzer: Heap-buffer-overflow in tint::writer::spirv::Builder::GenerateBuiltinCall

#40059968Reporter: cl...@chromium.org
$0
10/8/2022

freetype_type1_fuzzer: Negative-size-param in cf2_interpT2CharString

#40060132Reporter: cl...@chromium.org
$0
10/8/2022

render_text_api_fuzzer: Heap-buffer-overflow in gfx::internal::StyleIterator::GetTextBreakingRange

#40060133Reporter: cl...@chromium.org
$0
10/8/2022

Security: Use-after-Free in InstallUpdateCallback

#40059589Reporter: hu...@gmail.com
$1,000
10/7/2022

Security: heap-use-after-free in LinkToTextMenuObserver::CompleteWithError

#40059772Reporter: gl...@google.com
$0
10/7/2022

Security: heap-buffer-overflow ui/wm/core/transient_window_stacking_client.cc (chromeOS)

#40059984Reporter: rh...@gmail.com
$3,000
10/7/2022

minizip:unzip_fuzzer: Use-of-uninitialized-value in mz_stream_wzaes_open

#42516879Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
10/7/2022

Security: UAF in WebContentsFrameTracker

#40060046Reporter: le...@gmail.com
$20,000
10/6/2022

DCHECK failure in !cache_state_.frozen in liftoff-assembler.h

#40060105Reporter: cl...@chromium.org
$0
10/6/2022

Security: Use-After-Free in safe_browsing::ExtensionTelemetryPersister::InitHelper

#40059914Reporter: et...@gmail.com
$10,000
10/5/2022
Showing 5361-5370 of 10856 bugs