#Multiple,dos,
-
Google Chrome V8 JavaScript Engine 71.0.3578.98 - Out-of-Memory in Invalid Array Length
-
Skia - Incorrect Convexity Assumptions Leading to Buffer Overflows
-
tcpdump < 4.9.3 - Multiple Heap-Based Out-of-Bounds Reads
-
Google Chrome < M72 - Use-After-Free in RenderProcessHostImpl Binding for P2PSocketDispatcherHost
-
Google Chrome < M72 - RenderFrameHostImpl::CreateMediaStreamDispatcherHost Use-After-Free
-
Google Chrome < M72 - PaymentRequest Service Use-After-Free
-
Google Chrome < M72 - FileWriterImpl Use-After-Free
-
Google Chrome 72.0.3626.81 - 'V8TrustedTypePolicyOptions::ToImpl' Type Confusion
-
WebKitGTK+ - 'ThreadedCompositor' Race Condition
-
Google Chrome 73.0.3683.39 / Chromium 74.0.3712.0 - 'ReadableStream' Internal Object Leak Type Confusion
-
Google Chrome 73.0.3683.103 V8 JavaScript Engine - Out-of-Memory in Invalid Table Size Denial of Service (PoC)
-
Google Chrome V8 - Turbofan JSCallReducer::ReduceArrayIndexOfIncludes Out-of-Bounds Read/Write
-
Deluge 1.3.15 - 'URL' Denial of Service (PoC)
-
Google Chrome 73.0.3683.103 - 'WasmMemoryObject::Grow' Use-After-Free
-
Firefox 67.0.4 - Denial of Service
- 1 篇意见
- 32 次查看
-
Mozilla Spidermonkey - Unboxed Objects Uninitialized Memory Access
-
Google Chrome 74.0.3729.0 / 76.0.3789.0 - Heap Use-After-Free in blink::PresentationAvailabilityState::UpdateAvailability
-
WebKit - Universal XSS in WebCore::command
-
WebKit - UXSS Using JavaScript: URI and Synchronous Page Loads
-
WebKit - User-agent Shadow root Leak in WebCore::ReplacementFragment::ReplacementFragment