Fedoraproject

Fedora

5353 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.81%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Use after free in sqlite in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Insufficient policy enforcement in DevTools in Google Chrome prior to 92.0.4515.107 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted HTML page.

Exploit
  • EPSS 0.81%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Use after free in Autofill in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 64.56%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Use after free in GPU in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 0.81%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Use after free in protocol handling in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 0.81%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Out of bounds write in Autofill in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 0.26%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:12

Use after free in DevTools in Google Chrome prior to 92.0.4515.107 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 03.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:04:13

Insufficient policy enforcement in Installer in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to perform local privilege escalation via a crafted file.

Exploit
  • EPSS 0.64%
  • Veröffentlicht 02.08.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 06:22:07

A vulnerability was found in Radare2 in version 5.3.1. Improper input validation when reading a crafted LE binary can lead to resource exhaustion and DoS.

  • EPSS 1.08%
  • Veröffentlicht 02.08.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:07:47

crossbeam-deque is a package of work-stealing deques for building task schedulers when programming in Rust. In versions prior to 0.7.4 and 0.8.0, the result of the race condition is that one or more tasks in the worker queue can be popped twice inste...