Disclosed Chromium Security Bugs

Security: webgl heap-buffer-overflow getDrawSubresourceSerial

#40057835•Reporter: om...@krashconsulting.com
$5,000
2/15/2022

Security: heap-use-after-free in ThreadedIconLoader::DecodeAndResizeImageOnBackgroundThread

#40056922•Reporter: gl...@google.com
$0
2/14/2022

Primitive type confusion in ia32 AssembleCodePhase

#40057438•Reporter: fz...@gmail.com
$7,500
2/14/2022

Use after free in getSamplerTexture

#40057804•Reporter: sj...@gmail.com
$5,000
2/14/2022

v8_regexp_parser_fuzzer: DCHECK failure in index < length() / kUInt16Size in fixed-array-inl.h

#40057847•Reporter: cl...@chromium.org
$0
2/14/2022

Security: Heap-use-after-free in sharing_hub::SharingHubBubbleController::~SharingHubBubbleController

#40057760•Reporter: ch...@gmail.com
$5,000
2/11/2022

v8_regexp_parser_fuzzer: DCHECK failure in r.to() < kMaxUInt16 in regexp-macro-assembler.cc

#40057752•Reporter: cl...@chromium.org
$0
2/9/2022

Use after free in gl::VertexArray::setDependentDirtyBit

#40057631•Reporter: sj...@gmail.com
$5,000
2/8/2022

rdkit:mol_data_stream_to_mol_fuzzer: Use-of-uninitialized-value in RDKit::SGroupParsing::ParseV3000CStateLabel

#42508315•Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
2/8/2022

rdkit:mol_data_stream_to_mol_fuzzer: Bad-cast to RDKit::Atom from invalid vptr in RDKit::ROMol::initFromOther

#42508305•Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
2/8/2022
Showing 8111-8120 of 13102 bugs