Disclosed Chromium Security Bugs

Heap-use-after-free in blink::DeprecatedPaintLayer::setGroupedMapping

#40082450Reporter: mi...@gmail.com
$3,500
10/1/2016

Heap-use-after-free in v8::internal::MemoryReducer::TimerTask::Run

#40082480Reporter: th...@gmail.com
$3,500
10/1/2016

Security: Overflow in VertexBufferInterface::reserveVertexSpace causes memory-safety bug

#40082652Reporter: go...@lastland.net
$5,000
10/1/2016

Security: Memory-safety bug in Image11::map

#40082666Reporter: go...@lastland.net
$1,000
10/1/2016

Bad-cast to blink::ScriptWrappable from blink::WorkerWebSocketChannel;DOMWrapperMap.h:148:20

#40082850Reporter: th...@gmail.com
$3,500
10/1/2016

Heap-buffer-overflow in blink::SVGFilterGraphNodeMap::addPrimitive

#40083011Reporter: mi...@gmail.com
$1,500
10/1/2016

Use-after-poison in blink::WorkerWebSocketChannel::Bridge::traceImpl

#40083118Reporter: th...@gmail.com
$3,500
10/1/2016

Heap-use-after-free in blink::LayoutBlock::removeChild

#40083158Reporter: mi...@gmail.com
$3,500
10/1/2016

Heap-use-after-free in content::IndexedDBBackingStore::Transaction::ChainedBlobWriterImpl::ReportWriteC

#40083362Reporter: th...@gmail.com
$5,500
10/1/2016

Heap-buffer-overflow in blink::TimerBase::stop

#40083475Reporter: mi...@gmail.com
$3,500
10/1/2016
Showing 7011-7020 of 10939 bugs