Disclosed Chromium Security Bugs

CHECK failure: heap()->concurrent_marking()->IsStopped()

#40059546Reporter: cl...@chromium.org
$0
8/9/2022

[v8] Integer overflow leading to OOB/CHECK in icu_71::FormattedStringBuilder::prepareForInsertHelper

#40059400Reporter: pw...@korea.ac.kr
$5,000
8/6/2022

AddressSanitizer: heap-use-after-free in PermissionRequestChip::CreateBubble

#40059473Reporter: m....@gmail.com
$3,000
8/6/2022

Security: Heap-use-after-free in sharing_hub::SharingHubBubbleController::OnBubbleClosed

#40059502Reporter: me...@gmail.com
$3,000
8/5/2022

CHECK failure: local_weak_objects() ->discovered_ephemerons_local.IsLocalAndGlobalEmpty()

#40059515Reporter: cl...@chromium.org
$0
8/5/2022

Security: Heap-use-after-free in remote_cocoa::NativeWidgetNSWindowBridge::SetVisibilityState

#40059339Reporter: ch...@gmail.com
$3,000
8/4/2022

Security: navigator.clipboard.read() can lead to mutation XSS

#40059358Reporter: mi...@bentkowski.info
$3,000
8/4/2022

heap-buffer-overflow : device::BluetoothAdapterMac::LowEnergyCentralManagerUpdatedState

#40059438Reporter: cr...@system.gserviceaccount.com
$0
8/4/2022

dawn_wire_server_and_frontend_fuzzer: Heap-use-after-free in dawn::native::DeviceBase::DestroyObjects

#40059443Reporter: cl...@chromium.org
$0
8/4/2022

CHECK failure: object.Size() == size in heap.cc

#40059480Reporter: cl...@chromium.org
$0
8/3/2022
Showing 5561-5570 of 10901 bugs