CVE-2021-21111
- EPSS 0.45%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
Insufficient policy enforcement in WebUI in Google Chrome prior to 87.0.4280.141 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
CVE-2021-21112
- EPSS 1.73%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
Use after free in Blink in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21113
- EPSS 1.52%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
Heap buffer overflow in Skia in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21114
- EPSS 1.31%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
Use after free in audio in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21115
- EPSS 1.31%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
User after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-21116
- EPSS 1.52%
- Veröffentlicht 08.01.2021 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:47:35
Heap buffer overflow in audio in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-16039
- EPSS 0.46%
- Veröffentlicht 08.01.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:06:43
Use after free in extensions in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-16040
- EPSS 77.27%
- Veröffentlicht 08.01.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:06:43
Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-16041
- EPSS 0.88%
- Veröffentlicht 08.01.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:06:43
Out of bounds read in networking in Google Chrome prior to 87.0.4280.88 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page.
CVE-2020-16042
- EPSS 0.4%
- Veröffentlicht 08.01.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:06:43
Uninitialized Use in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.