Search CVE reports
861 – 870 of 881 results
Some fixes available 3 of 4
Use-after-free vulnerability in the WebSharedWorkerStub::OnTerminateWorkerContext function in content/worker/websharedworker_stub.cc in the Web Workers implementation in Google Chrome before 34.0.1847.116 allows remote attackers...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
Integer overflow in the SoftwareFrameManager::SwapToNewFrame function in content/browser/renderer_host/software_frame_manager.cc in the software compositor in Google Chrome before 34.0.1847.116 allows remote attackers to cause a...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 19
Google V8, as used in Google Chrome before 34.0.1847.116, does not properly use numeric casts during handling of typed arrays, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly...
5 affected packages
chromium-browser, libv8-3.14, oxide-qt, libv8, qtjsbackend-opensource-src
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | Not affected |
libv8-3.14 | — | — | — | Ignored |
oxide-qt | — | — | — | Not in release |
libv8 | — | — | — | Not in release |
qtjsbackend-opensource-src | — | — | — | Not in release |
Some fixes available 3 of 19
Cross-site scripting (XSS) vulnerability in the Runtime_SetPrototype function in runtime.cc in Google V8, as used in Google Chrome before 34.0.1847.116, allows remote attackers to inject arbitrary web script or HTML via...
5 affected packages
chromium-browser, libv8-3.14, oxide-qt, libv8, qtjsbackend-opensource-src
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | Not affected |
libv8-3.14 | — | — | — | Ignored |
oxide-qt | — | — | — | Not in release |
libv8 | — | — | — | Not in release |
qtjsbackend-opensource-src | — | — | — | Not in release |
Some fixes available 9 of 13
The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain...
5 affected packages
chromium-browser, firefox, nss, oxide-qt, thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
firefox | — | — | — | — |
nss | — | — | — | — |
oxide-qt | — | — | — | — |
thunderbird | — | — | — | — |
Some fixes available 3 of 4
Directory traversal vulnerability in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows has unspecified impact and attack vectors.
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
The ScopedClipboardWriter::WritePickledData function in ui/base/clipboard/scoped_clipboard_writer.cc in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows does not verify a certain format...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
Use-after-free vulnerability in the AttributeSetter function in bindings/templates/attributes.cpp in the bindings in Blink, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows,...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 13 of 29
Google V8, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via...
5 affected packages
chromium-browser, libv8-3.14, oxide-qt, libv8, qtjsbackend-opensource-src
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | Fixed |
libv8-3.14 | — | — | — | Ignored |
oxide-qt | — | — | — | Not in release |
libv8 | — | — | — | Not in release |
qtjsbackend-opensource-src | — | — | — | Not in release |
Some fixes available 13 of 29
Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, as used in Google Chrome before 33.0.1750.149, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
5 affected packages
chromium-browser, libv8-3.14, oxide-qt, libv8, qtjsbackend-opensource-src
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | Fixed |
libv8-3.14 | — | — | — | Ignored |
oxide-qt | — | — | — | Not in release |
libv8 | — | — | — | Not in release |
qtjsbackend-opensource-src | — | — | — | Not in release |