ALT-PU-2022-3175-1
Closed vulnerabilities
BDU:2022-06706
Уязвимость обработчика JavaScript-сценариев V8 браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2022-06759
Уязвимость обработчика JavaScript-сценариев V8 браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2022-06760
Уязвимость механизма Web Workers браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2022-06761
Уязвимость компонента WebCodecs браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2022-06762
Уязвимость обработчика JavaScript-сценариев V8 браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2022-06763
Уязвимость компонента Crashpad браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2022-3885
Use after free in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1377816
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1377816
- https://www.debian.org/security/2022/dsa-5275
Modified: 2024-11-21
CVE-2022-3886
Use after free in Speech Recognition in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1372999
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1372999
- https://www.debian.org/security/2022/dsa-5275
Modified: 2024-11-21
CVE-2022-3887
Use after free in Web Workers in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1372695
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1372695
- https://www.debian.org/security/2022/dsa-5275
Modified: 2024-11-21
CVE-2022-3888
Use after free in WebCodecs in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1375059
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1375059
- https://www.debian.org/security/2022/dsa-5275
Modified: 2024-11-21
CVE-2022-3889
Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1380063
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1380063
- https://www.debian.org/security/2022/dsa-5275
Modified: 2024-11-21
CVE-2022-3890
Heap buffer overflow in Crashpad in Google Chrome on Android prior to 107.0.5304.106 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1380083
- https://www.debian.org/security/2022/dsa-5275
- https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop.html
- https://crbug.com/1380083
- https://www.debian.org/security/2022/dsa-5275