Disclosed Chromium Security Bugs

v8_wasm_fuzzer: DCHECK failure in has(reg.low()) == has(reg.high()) in liftoff-register.h

#40054283•Reporter: cl...@chromium.org
$0
4/17/2021

Heap-use-after-free in ash::tray::TimeTrayItemView::~TimeTrayItemView

#40054392•Reporter: cl...@chromium.org
$0
4/17/2021

wayland_fuzzer: Heap-use-after-free in decltype

#40054399•Reporter: cl...@chromium.org
$0
4/17/2021

performance API reveals information about redirects (XS-Leak)

#40054148•Reporter: nd...@protonmail.com
$0
4/16/2021

uaf in webgpu

#40054233•Reporter: wx...@gmail.com
$0
4/16/2021

uaf in dawn_wire::server::Server::OnBufferMapAsyncCallback(--enable-unsafe-webgpu)

#40053834•Reporter: ne...@gmail.com
$0
4/15/2021

Security: Debug check failed: code == topmost_ implies safe_to_deopt_

#40054275•Reporter: ty...@gmail.com
$16,000
4/15/2021

dawn_wire_server_and_frontend_fuzzer: Heap-use-after-free in void dawn_wire::ChunkedCommandSerializer::SerializeCommandImpl

#40054303•Reporter: cl...@chromium.org
$0
4/15/2021

dawn_wire_server_and_frontend_fuzzer: Heap-use-after-free in dawn_wire::server::KnownObjects::Get

#40054315•Reporter: cl...@chromium.org
$0
4/15/2021

heap-use-after-free : mojo::core::NodeController::DropPeer

#40054316•Reporter: cr...@system.gserviceaccount.com
$0
4/15/2021
Showing 8551-8560 of 13102 bugs