Chromium Security Bugs

123 Followers
0 Following
1.5K Posts

This bot account periodically posts about newly disclosed security bugs in Chromium.

Run by @securitymb but it is not an official Google account.

Twitterhttps://twitter.com/BugsChromium
Dashboardhttps://bugs-chromium.bentkowski.info/
Security: arbitrary address access in vrend_renderer_blit_gl (reward: $2000) https://crbug.com/1483991
1483991 - chromium - An open-source project to help move the web forward. - Monorail

Use-after-poison in cppgc::internal::HeapVisitor<cppgc::internal::UnmarkedObjectsPoisoner>::Traverse https://crbug.com/1496001
1496001 - chromium - An open-source project to help move the web forward. - Monorail

Use-after-poison in cppgc::internal::MarkingStateBase::MarkAndPush https://crbug.com/1496806
1496806 - chromium - An open-source project to help move the web forward. - Monorail

Security: Contextual search selection offsets should be sanitized https://crbug.com/1343955
1343955 - chromium - An open-source project to help move the web forward. - Monorail

chrome.inspectedWindow.eval execution on Web Store with trailing URL dot (reward: $5000) https://crbug.com/1472898
1472898 - chromium - An open-source project to help move the web forward. - Monorail

Security: Chrome OS: Multiple controllable OOB write bugs in Qcom camx drivers may cause sandbox escape to kernel https://crbug.com/1472961
1472961 - chromium - An open-source project to help move the web forward. - Monorail

Security: Race Condition UAF in virtio_transport_space_update (reward: $2000) https://crbug.com/1486350
1486350 - chromium - An open-source project to help move the web forward. - Monorail

Use-after-poison in blink::HTMLPlugInElement::DetachLayoutTree https://crbug.com/1495512
1495512 - chromium - An open-source project to help move the web forward. - Monorail

heap-buffer-overflow in ~SingleShotFrameHandler(imagecapture/image_capture_frame_grabber.cc) (reward: $8000) https://crbug.com/1494573
1494573 - chromium - An open-source project to help move the web forward. - Monorail

security: libmbim | out-of-bounds access on mbim-message.c (reward: $250) https://crbug.com/1474639
1474639 - chromium - An open-source project to help move the web forward. - Monorail