ALT-PU-2022-2840-1
Closed vulnerabilities
Modified: 2023-02-28
BDU:2022-06629
Уязвимость пиринговых соединений (Peer Connection) браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
Modified: 2023-02-28
BDU:2022-06630
Уязвимость пользовательских вкладок браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
Modified: 2023-02-28
BDU:2022-06875
Уязвимость службы Safe Browsing браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2022-3445
Use after free in Skia in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1364604
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1364604
- https://security.gentoo.org/glsa/202305-10
Modified: 2024-11-21
CVE-2022-3446
Heap buffer overflow in WebSQL in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1368076
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1368076
- https://security.gentoo.org/glsa/202305-10
Modified: 2024-11-21
CVE-2022-3447
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 106.0.5249.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1366582
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1366582
- https://security.gentoo.org/glsa/202305-10
Modified: 2024-11-21
CVE-2022-3448
Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1363040
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1363040
- https://security.gentoo.org/glsa/202305-10
Modified: 2024-11-21
CVE-2022-3449
Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1364662
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1364662
- https://security.gentoo.org/glsa/202305-10
Modified: 2024-11-21
CVE-2022-3450
Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1369882
- https://security.gentoo.org/glsa/202305-10
- https://chromereleases.googleblog.com/2022/10/stable-channel-update-for-desktop_11.html
- https://crbug.com/1369882
- https://security.gentoo.org/glsa/202305-10