CVE-2018-16065
- EPSS 2.4%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:01
A Javascript reentrancy issues that caused a use-after-free in V8 in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
CVE-2018-16066
- EPSS 1.41%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:02
A use after free in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2018-16067
- EPSS 1.3%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:02
A use after free in WebAudio in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2018-16068
- EPSS 1.56%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:02
Missing validation in Mojo in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
CVE-2018-16071
- EPSS 19.03%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:02
A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruption via a crafted video file.
CVE-2018-16072
- EPSS 0.15%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:02
A missing origin check related to HLS manifests in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
CVE-2018-16076
- EPSS 0.33%
- Veröffentlicht 09.01.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 03:52:03
Missing bounds check in PDFium in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
CVE-2016-10403
- EPSS 0.38%
- Veröffentlicht 09.01.2019 19:29:00
- Zuletzt bearbeitet 21.11.2024 02:43:56
Insufficient data validation on image data in PDFium in Google Chrome prior to 51.0.2704.63 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
CVE-2016-9651
- EPSS 52.74%
- Veröffentlicht 09.01.2019 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:01:34
A missing check for whether a property of a JS object is private in V8 in Google Chrome prior to 55.0.2883.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
CVE-2017-15401
- EPSS 1.18%
- Veröffentlicht 09.01.2019 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:14:38
A memory corruption bug in WebAssembly could lead to out of bounds read and write through V8 in WebAssembly in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.