CVE-2019-8536
- EPSS 1.59%
- Veröffentlicht 18.12.2019 18:15:24
- Zuletzt bearbeitet 21.11.2024 04:50:01
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to ar...
CVE-2019-8506
- EPSS 9.34%
- Veröffentlicht 18.12.2019 18:15:22
- Zuletzt bearbeitet 28.02.2025 14:44:48
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbit...
CVE-2019-19880
- EPSS 8.44%
- Veröffentlicht 18.12.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:35:34
exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled.
CVE-2019-13753
- EPSS 4.17%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:39
Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
CVE-2019-13754
- EPSS 0.28%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:39
Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
CVE-2019-13755
- EPSS 1.85%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:39
Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to disable extensions via a crafted HTML page.
CVE-2019-13756
- EPSS 1.85%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:39
Incorrect security UI in printing in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
CVE-2019-13757
- EPSS 1.85%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:39
Incorrect security UI in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2019-13758
- EPSS 1%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:40
Insufficient policy enforcement in navigation in Google Chrome on Android prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
CVE-2019-13759
- EPSS 2.34%
- Veröffentlicht 10.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:25:40
Incorrect security UI in interstitials in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.