CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
101842 | CVE-2017-5022 | Candidate | Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to properly enforce unsafe-inline content security policy, which allowed a remote attacker to bypass content security policy via a crafted HTML page. | Assigned (20170102) | None (candidate not yet proposed) | View | |
101843 | CVE-2017-5023 | Candidate | Type confusion in Histogram in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to potentially exploit a near null dereference via a crafted HTML page. | Assigned (20170102) | None (candidate not yet proposed) | View | |
101844 | CVE-2017-5024 | Candidate | FFmpeg in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted video file. | Assigned (20170102) | None (candidate not yet proposed) | View | |
101845 | CVE-2017-5025 | Candidate | FFmpeg in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted video file. | Assigned (20170102) | None (candidate not yet proposed) | View | |
101846 | CVE-2017-5026 | Candidate | Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to prevent alerts from being displayed by swapped out frames, which allowed a remote attacker to show alerts on a page they don"t control via a crafted HTML page. | Assigned (20170102) | None (candidate not yet proposed) | View |
Page 1216 of 20943, showing 5 records out of 104715 total, starting on record 6076, ending on 6080