CVE-2017-5053
- EPSS 1.39%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page, related to Array.prototype.i...
CVE-2017-5054
- EPSS 0.54%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to obtain heap memory contents via a crafted HTML page.
CVE-2017-5056
- EPSS 0.91%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
A use after free in Blink in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
CVE-2017-5057
- EPSS 0.84%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
Type confusion in PDFium in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
CVE-2017-5059
- EPSS 2.49%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
Type confusion in Blink in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac, and 58.0.3029.83 for Android, allowed a remote attacker to potentially obtain code execution via a crafted HTML page.
CVE-2017-5060
- EPSS 0.69%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.
CVE-2017-5061
- EPSS 0.47%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
A race condition in navigation in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2017-5062
- EPSS 0.99%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
A use after free in Chrome Apps in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to potentially perform out of bounds memory access via a crafted Chrome extension.
CVE-2017-5063
- EPSS 0.91%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
A numeric overflow in Skia in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac, and 58.0.3029.83 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
CVE-2017-5065
- EPSS 0.71%
- Published 27.10.2017 05:29:00
- Last modified 20.04.2025 01:37:25
Lack of an appropriate action on page navigation in Blink in Google Chrome prior to 58.0.3029.81 for Windows and Mac allowed a remote attacker to potentially confuse a user into making an incorrect security decision via a crafted HTML page.