Disclosed Chromium Security Bugs

Security: blink_platform!blink::CreateImageFromVideoFrame checkfailed

#40056721Reporter: ha...@gmail.com
$0
11/8/2021

dawn_wire_server_and_vulkan_backend_fuzzer: Heap-use-after-free in dawn_wire::server::Server::InjectDevice

#40056745Reporter: cl...@chromium.org
$0
11/8/2021

tint_msl_transform_fuzzer: Heap-buffer-overflow in tint::writer::msl::GeneratorImpl::EmitTypeConstructor

#40056630Reporter: cl...@chromium.org
$0
11/5/2021

Security: SameSite=Lax cookie sent with cross-origin request inside iframe

#40050641Reporter: am...@sevone.com
$1,000
11/4/2021

trunks_tpm_pinweaver_fuzzer: Global-buffer-overflow in google::protobuf::internal::EpsCopyInputStream::ReadString

#40056145Reporter: cl...@chromium.org
$0
11/4/2021

tint_inspector_fuzzer.exe: Illegal-instruction in tint::fuzzers::FatalError

#40056568Reporter: cl...@chromium.org
$0
11/4/2021

dawn_wire_server_and_frontend_fuzzer: Bad-cast to dawn_wire::server::Server from invalid vptr in dawn_wire::server::Server::InjectDevice

#40056691Reporter: cl...@chromium.org
$0
11/4/2021

CHECK failure: !map.is_dictionary_map() implies map.is_stable()

#40056713Reporter: cl...@chromium.org
$0
11/4/2021

dawn_wire_server_and_frontend_fuzzer: Bad-cast to dawn_wire::server::Serverdawn_wire::server::Server::InjectDevice in dawn_native::LoggingCallbackTask::HandleShutDown

#40056722Reporter: cl...@chromium.org
$0
11/4/2021

Security: heap-buffer-overflow in TabStripModel::IsTabBlocked

#40056132Reporter: yu...@gmail.com
$0
11/2/2021
Showing 6071-6080 of 10939 bugs