Search CVE reports
871 – 880 of 881 results
Some fixes available 3 of 4
Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websocket_dispatcher_host.cc in the Web Sockets implementation in Google Chrome before 33.0.1750.149 might allow...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
Use-after-free vulnerability in the DatabaseThread::cleanupDatabaseThread function in modules/webdatabase/DatabaseThread.cpp in the web database implementation in Blink, as used in Google Chrome before 33.0.1750.149, allows remote...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
The GenerateFunction function in bindings/scripts/code_generator_v8.pm in Blink, as used in Google Chrome before 33.0.1750.149, does not implement a certain cross-origin restriction for the EventTarget::dispatchEvent function,...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
Use-after-free vulnerability in modules/speech/SpeechSynthesis.cpp in Blink, as used in Google Chrome before 33.0.1750.149, allows remote attackers to cause a denial of service or possibly have unspecified other impact by...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 13 of 29
Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
5 affected packages
libv8, chromium-browser, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libv8 | — | — | — | Not in release |
chromium-browser | — | — | — | Fixed |
libv8-3.14 | — | — | — | Ignored |
oxide-qt | — | — | — | Not in release |
qtjsbackend-opensource-src | — | — | — | Not in release |
Some fixes available 3 of 4
Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.146 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
The PepperFlashRendererHost::OnNavigate function in renderer/pepper/pepper_flash_renderer_host.cc in Google Chrome before 33.0.1750.146 does not verify that all headers are Cross-Origin Resource Sharing (CORS) simple headers...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
Some fixes available 3 of 4
Heap-based buffer overflow in the ResourceProvider::InitializeSoftware function in cc/resources/resource_provider.cc in Google Chrome before 33.0.1750.146 allows remote attackers to cause a denial of service or possibly have...
2 affected packages
chromium-browser, oxide-qt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | — | — | — | — |
oxide-qt | — | — | — | — |
The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (crash) via vectors related to the rtp format.
9 affected packages
chromium-browser, ffmpeg, gstreamer0.10-ffmpeg, kino, libav...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | Not affected | Not affected | Not in release | Not affected |
ffmpeg | Not affected | Not affected | Not affected | Not affected |
gstreamer0.10-ffmpeg | Not in release | Not in release | Not in release | Not in release |
kino | Not in release | Not affected | Not affected | Not affected |
libav | Not in release | Not in release | Not in release | Not in release |
oxide-qt | Not in release | Not in release | Not in release | Not in release |
mythtv | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
qtwebengine-opensource-src | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
gst-libav1.0 | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
The mov_text_decode_frame function in libavcodec/movtextdec.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via crafted 3GPP TS 26.245 data.
7 affected packages
chromium-browser, ffmpeg, libav, oxide-qt, mythtv...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
chromium-browser | Not affected | Not affected | Not in release | Not affected |
ffmpeg | Not affected | Not affected | Not affected | Not affected |
libav | Not in release | Not in release | Not in release | Not in release |
oxide-qt | Not in release | Not in release | Not in release | Not in release |
mythtv | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
qtwebengine-opensource-src | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
gst-libav1.0 | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |