CVE-2021-4061
- EPSS 1.46%
- Veröffentlicht 23.12.2021 01:15:08
- Zuletzt bearbeitet 21.11.2024 06:36:49
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-38005
- EPSS 1.41%
- Veröffentlicht 23.12.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:15
Use after free in loader in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-38006
- EPSS 1.2%
- Veröffentlicht 23.12.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:15
Use after free in storage foundation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-38007
- EPSS 1.42%
- Veröffentlicht 23.12.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:15
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-38008
- EPSS 1.46%
- Veröffentlicht 23.12.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:15
Use after free in media in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- EPSS 0.28%
- Veröffentlicht 22.12.2021 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:31:28
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.
CVE-2021-45290
- EPSS 0.36%
- Veröffentlicht 21.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:32:04
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.
CVE-2021-45293
- EPSS 0.18%
- Veröffentlicht 21.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:32:04
A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinaryBuilder::visitLet.
CVE-2021-45450
- EPSS 0.07%
- Veröffentlicht 21.12.2021 07:15:06
- Zuletzt bearbeitet 21.11.2024 06:32:14
In Mbed TLS before 2.28.0 and 3.x before 3.1.0, psa_cipher_generate_iv and psa_cipher_encrypt allow policy bypass or oracle-based decryption when the output buffer is at memory locations accessible to an untrusted application.
CVE-2021-45451
- EPSS 0.12%
- Veröffentlicht 21.12.2021 07:15:06
- Zuletzt bearbeitet 21.11.2024 06:32:14
In Mbed TLS before 3.1.0, psa_aead_generate_nonce allows policy bypass or oracle-based decryption when the output buffer is at memory locations accessible to an untrusted application.