CVE-2023-0699 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0699
07 Feb 2023 — Use after free in GPU in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page and browser shutdown. (Chromium security severity: Medium) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-416: Use After Free •
CVE-2023-0702 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0702
07 Feb 2023 — Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memo... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2023-0696 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0696
07 Feb 2023 — Type confusion in V8 in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memory. A remote attacker who convinced a user to install a malicious extens... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2023-0701 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0701
07 Feb 2023 — Heap buffer overflow in WebUI in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interaction . (Chromium security severity: Medium) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memory. A ... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-787: Out-of-bounds Write •
CVE-2023-0703 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0703
07 Feb 2023 — Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interactions. (Chromium security severity: Medium) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2023-0700 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0700
07 Feb 2023 — Inappropriate implementation in Download in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memory. A remote attacker who conv... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html •
CVE-2023-0697 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0697
07 Feb 2023 — Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 110.0.5481.77 allowed a remote attacker to spoof the contents of the security UI via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html •
CVE-2023-0705 – Ubuntu Security Notice USN-5881-1
https://notcve.org/view.php?id=CVE-2023-0705
07 Feb 2023 — Integer overflow in Core in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who had one a race condition to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low) It was discovered that Chromium did not properly manage memory. A remote attacker could possibly use these issues to cause a denial of service or execute arbitrary code via a crafted HTML page. It was discovered that Chromium did not properly manage memory. A remote attacker who convinced a us... • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-190: Integer Overflow or Wraparound •
CVE-2023-0698 – Gentoo Linux Security Advisory 202309-17
https://notcve.org/view.php?id=CVE-2023-0698
07 Feb 2023 — Out of bounds read in WebRTC in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution. Versions greater than or equal to 113.0.5672.126 are affected. • https://chromereleases.googleblog.com/2023/02/stable-channel-update-for-desktop.html • CWE-125: Out-of-bounds Read •
CVE-2023-0471 – Debian Security Advisory 5328-1
https://notcve.org/view.php?id=CVE-2023-0471
24 Jan 2023 — Use after free in WebTransport in Google Chrome prior to 109.0.5414.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Use after free en WebTransport en Google Chrome anterior a 109.0.5414.119 permitía a un atacante remoto explotar potencialmente la corrupción del almacenamiento dinámico a través de una página HTML manipulada. (Severidad de seguridad de Chrome: alta) It was discovered that Chromium did not properly manage memory. ... • https://chromereleases.googleblog.com/2023/01/stable-channel-update-for-desktop_24.html • CWE-416: Use After Free •