Disclosed Chromium Security Bugs

mediasource_MP4_AV1_pipeline_integration_fuzzer: Crash in dav1d_refmvs_load_tmvs

#40057871Reporter: cl...@chromium.org
$0
2/18/2022

Security: Remote debug can be used to access protected profile data (e.g. cookies)

#40050335Reporter: nr...@chromium.org
$0
2/16/2022

Security: heap-use-after-free in blink::NativeIOFile::DoRead

#40056904Reporter: gl...@google.com
$0
2/16/2022

Improper restriction in password saving form, while navigation from one site to another site

#40057696Reporter: ch...@gmail.com
$500
2/16/2022

Use-after-poison in blink::HTMLSlotElement::DetachLayoutTree

#40057830Reporter: cl...@chromium.org
$0
2/16/2022

Security: Wild write in angle

#40057843Reporter: ao...@gmail.com
$5,000
2/16/2022

Security: V8 CreateLiteral type confusion when processing ..spread leads to RCE

#40057609Reporter: bt...@gmail.com
$20,000
2/15/2022

Security: webgl heap-use-after-free in BitSetT

#40057825Reporter: om...@krashconsulting.com
$5,000
2/15/2022

Security: webgl heap-buffer-overflow getDrawSubresourceSerial

#40057835Reporter: om...@krashconsulting.com
$5,000
2/15/2022

Security: heap-use-after-free in ThreadedIconLoader::DecodeAndResizeImageOnBackgroundThread

#40056922Reporter: gl...@google.com
$0
2/14/2022
Showing 5941-5950 of 10930 bugs