Fedoraproject

Fedora

5319 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.56%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:21

Use after free in Input in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to enage in specific user interactions to potentially exploit heap corruption via specific UI interactions.

  • EPSS 0.65%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:21

Use after free in Sign-In Flow in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • EPSS 0.44%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:21

Insufficient policy enforcement in Cookies in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

  • EPSS 0.27%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:21

Inappropriate implementation in Extensions API in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to install a malicious extension to spoof the contents of the Omnibox (URL bar) via a crafted Chrome Extension.

  • EPSS 0.18%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:21

Use after free in Extensions API in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via specific UI interactions.

  • EPSS 0.2%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:22

Insufficient validation of untrusted input in Internals in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to bypass download restrictions via a malicious file .

  • EPSS 0.27%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:22

Insufficient validation of untrusted input in Settings in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to install a malicious extension to inject scripts or HTML into a privileged page via a crafted HTML page.

  • EPSS 1.07%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:22

Use after free in WebUI in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.

Exploit
  • EPSS 0.16%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:22

Use after free in Extensions in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via specific UI interactions.

  • EPSS 0.3%
  • Veröffentlicht 12.08.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 07:01:22

Insufficient validation of untrusted input in Safe Browsing in Google Chrome on Windows prior to 104.0.5112.79 allowed a remote attacker to bypass download restrictions via a crafted file.