CVE-2023-1213 – Debian Security Advisory 5371-1
https://notcve.org/view.php?id=CVE-2023-1213
07 Mar 2023 — Use after free in Swiftshader in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure. • https://chromereleases.googleblog.com/2023/03/stable-channel-update-for-desktop.html • CWE-416: Use After Free •
CVE-2023-0941 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0941
22 Feb 2023 — Use after free in Prompts in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0933 – Ubuntu Security Notice USN-5949-1
https://notcve.org/view.php?id=CVE-2023-0933
22 Feb 2023 — Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium) It was discovered that Chromium could be made to write out of bounds in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. It was discovered that Chromium contained an integer overflow in the... • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-190: Integer Overflow or Wraparound •
CVE-2023-0932 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0932
22 Feb 2023 — Use after free in WebRTC in Google Chrome on Windows prior to 110.0.5481.177 allowed a remote attacker who convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0931 – Ubuntu Security Notice USN-5949-1
https://notcve.org/view.php?id=CVE-2023-0931
22 Feb 2023 — Use after free in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) It was discovered that Chromium could be made to write out of bounds in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. It was discovered that Chromium contained an integer overflow in the ... • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0930 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0930
22 Feb 2023 — Heap buffer overflow in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-787: Out-of-bounds Write •
CVE-2023-0929 – Ubuntu Security Notice USN-5949-1
https://notcve.org/view.php?id=CVE-2023-0929
22 Feb 2023 — Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) It was discovered that Chromium could be made to write out of bounds in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. It was discovered that Chromium contained an integer overflow in the... • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0928 – Ubuntu Security Notice USN-5949-1
https://notcve.org/view.php?id=CVE-2023-0928
22 Feb 2023 — Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) It was discovered that Chromium could be made to write out of bounds in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. It was discovered that Chromium contained an integer overflow i... • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0927 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0927
22 Feb 2023 — Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-desktop-update_22.html • CWE-416: Use After Free •
CVE-2023-0704 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0704
07 Feb 2023 — Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to bypass same origin policy and proxy settings via a crafted HTML page. (Chromium security severity: Low) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memory. A remote attacker who convinced a use... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html •