
CVE-2020-16023 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16023
07 Dec 2020 — Use after free in WebCodecs in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Un uso de la memoria previamente liberada en WebCodecs en Google Chrome versiones anteriores a 87.0.4280.66, permitió a un atacante remoto explotar potencialmente una corrupción de la pila por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary executi... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html • CWE-416: Use After Free CWE-787: Out-of-bounds Write •

CVE-2020-16021 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16021
07 Dec 2020 — Race in image burner in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the browser process to perform OS-level privilege escalation via a malicious file. Una Carrera en image burner en Google Chrome en ChromeOS versiones anteriores a 87.0.4280.66, permitió a un atacante remoto que había comprometido el proceso del navegador llevar a cabo una escalada de privilegios a nivel de SO por medio de un archivo malicioso Multiple vulnerabilities have been found in Chrom... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVE-2020-16029 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16029
07 Dec 2020 — Inappropriate implementation in PDFium in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to bypass navigation restrictions via a crafted PDF file. Una implementación inapropiada en PDFium en Google Chrome versiones anteriores a 87.0.4280.66, permitió a un atacante remoto omitir unas restricciones de navegación por medio de un archivo PDF diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code. Versions... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html • CWE-862: Missing Authorization •

CVE-2020-16037 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16037
07 Dec 2020 — Use after free in clipboard in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Un uso de la memoria previamente liberada en clipboard en Google Chrome versiones anteriores a 87.0.4280.88, permitió a un atacante remoto explotar potencialmente una corrupción de la pila por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary executi... • https://chromereleases.googleblog.com/2020/12/stable-channel-update-for-desktop.html • CWE-416: Use After Free CWE-787: Out-of-bounds Write •

CVE-2020-16031 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16031
07 Dec 2020 — Insufficient data validation in UI in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. Una comprobación insuficiente de datos en UI en Google Chrome versiones anteriores a 87.0.4280.66, permitió a un atacante remoto falsificar el contenido del Omnibox (barra de URL) por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary e... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html • CWE-1021: Improper Restriction of Rendered UI Layers or Frames •

CVE-2020-16036 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16036
07 Dec 2020 — Inappropriate implementation in cookies in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to bypass cookie restrictions via a crafted HTML page. Una implementación inapropiada en cookies en Google Chrome versiones anteriores a 87.0.4280.66, permitió a un atacante remoto omitir las restricciones de cookies por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code. Versions les... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html •

CVE-2020-16039 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16039
07 Dec 2020 — Use after free in extensions in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Un uso de la memoria previamente liberada en extensions en Google Chrome versiones anteriores a 87.0.4280.88, permitió a un atacante remoto explotar una corrupción de la pila por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code. V... • https://chromereleases.googleblog.com/2020/12/stable-channel-update-for-desktop.html • CWE-416: Use After Free CWE-787: Out-of-bounds Write •

CVE-2020-16041 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16041
07 Dec 2020 — Out of bounds read in networking in Google Chrome prior to 87.0.4280.88 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. Una lectura fuera de límites en networking en Google Chrome versiones anteriores a 87.0.4280.88, permitió a un atacante remoto que había comprometido el proceso del renderizador conseguir información potencialmente confidencial de la memoria del proceso por medio de una página HTML d... • https://packetstorm.news/files/id/161581 • CWE-125: Out-of-bounds Read •

CVE-2020-16033 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16033
07 Dec 2020 — Inappropriate implementation in WebUSB in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof security UI via a crafted HTML page. Una implementación inapropiada en WebUSB en Google Chrome versiones anteriores a 87.0.4280.66, permitió a un atacante remoto falsificar una IU de seguridad por medio de una página HTML diseñada Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code. Versions less than 87.0.4280... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html • CWE-1021: Improper Restriction of Rendered UI Layers or Frames •

CVE-2020-16019 – Gentoo Linux Security Advisory 202012-05
https://notcve.org/view.php?id=CVE-2020-16019
07 Dec 2020 — Inappropriate implementation in filesystem in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the browser process to bypass noexec restrictions via a malicious file. Una implementación inapropiada en filesystem de Google Chrome en ChromeOS versiones anteriores a 87.0.4280.66, permitió a un atacante remoto que había comprometido el proceso del navegador omitir las restricciones noexec por medio de un archivo malicioso Multiple vulnerabilities have been found in C... • https://chromereleases.googleblog.com/2020/11/stable-channel-update-for-desktop_17.html •