|
247761
|
8.8 |
HIGH
Network
|
google
|
chrome
|
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5048
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247762
|
8.8 |
HIGH
Network
|
google
|
chrome
|
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5047
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247763
|
4.3 |
MEDIUM
Network
|
google redhat debian
|
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android had insufficient policy enforcement, which allowed a remote attacker to spoof the location object v…
|
NVD-CWE-noinfo
|
CVE-2017-5046
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247764
|
6.1 |
MEDIUM
Network
|
google redhat debian
|
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed detection of a blocked iframe load, which allowed a remote attacker to brute force…
|
CWE-79
Cross-site Scripting
|
CVE-2017-5045
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247765
|
6.3 |
MEDIUM
Network
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Heap buffer overflow in filter processing in Skia in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bound…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-5044
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247766
|
8.8 |
HIGH
Network
|
google redhat debian
|
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Chrome Apps in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac had a use after free bug in GuestView, which allowed a remote attacker to perform an out of bounds memory read via a cra…
|
CWE-416
Use After Free
|
CVE-2017-5043
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247767
|
5.7 |
MEDIUM
Adjacent
|
google redhat debian
|
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2017-5042
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247768
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Google Chrome prior to 57.0.2987.100 incorrectly handled back-forward navigation, which allowed a remote attacker to display incorrect information for a site via a crafted HTML page.
|
CWE-20
Improper Input Validation
|
CVE-2017-5041
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247769
|
4.3 |
MEDIUM
Network
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android was missing a neutering check, which allowed a remote attacker to read values in memory via a craft…
|
NVD-CWE-noinfo
|
CVE-2017-5040
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247770
|
7.8 |
HIGH
Local
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
A use after free in PDFium in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to potentially exploit heap corruption via a craf…
|
CWE-416
Use After Free
|
CVE-2017-5039
|
2024-11-21 12:26 |
2017-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|