Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google pdfium - vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2017-5092
Insufficient validation of untrusted input in PPAPI Plugins in Google Chrome before 60.0.3112.78 for Windows allowed a remote malicious user to potentially perform a sandbox escape via a crafted HTML page.
Google Chrome
Debian Debian Linux 9.0
8.8
CVSSv3
CVE-2019-5792
Integer overflow in PDFium in Google Chrome before 73.0.3683.75 allowed a remote malicious user to potentially perform out of bounds memory access via a crafted PDF file.
Google Chrome
Opensuse Leap 42.3
Opensuse Leap 15.0
Opensuse Backports Sle-15
Opensuse Leap 15.1
8.8
CVSSv3
CVE-2019-5795
Integer overflow in PDFium in Google Chrome before 73.0.3683.75 allowed a remote malicious user to potentially perform out of bounds memory access via a crafted PDF file.
Google Chrome
Opensuse Leap 42.3
Opensuse Leap 15.0
Opensuse Backports Sle-15
Opensuse Leap 15.1
6.5
CVSSv3
CVE-2018-16069
Unintended floating-point error accumulation in SwiftShader in Google Chrome before 69.0.3497.81 allowed a remote malicious user to leak cross-origin data via a crafted HTML page.
Google Chrome
8.8
CVSSv3
CVE-2018-16070
Integer overflows in Skia in Google Chrome before 69.0.3497.81 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
6.5
CVSSv3
CVE-2018-16073
Insufficient policy enforcement in site isolation in Google Chrome before 69.0.3497.81 allowed a remote malicious user to bypass site isolation via a crafted HTML page.
Google Chrome
6.5
CVSSv3
CVE-2018-16074
Insufficient policy enforcement in site isolation in Google Chrome before 69.0.3497.81 allowed a remote malicious user to bypass site isolation via a crafted HTML page.
Google Chrome
5.3
CVSSv3
CVE-2018-16075
Insufficient file type enforcement in Blink in Google Chrome before 69.0.3497.81 allowed a remote malicious user to obtain local file data via a crafted HTML page.
Google Chrome
6.5
CVSSv3
CVE-2018-16077
Object lifecycle issue in Blink in Google Chrome before 69.0.3497.81 allowed a remote malicious user to bypass content security policy via a crafted HTML page.
Google Chrome
5.5
CVSSv3
CVE-2021-21217
Uninitialized data in PDFium in Google Chrome before 90.0.4430.72 allowed a remote malicious user to obtain potentially sensitive information from process memory via a crafted PDF file.
Google Chrome
Debian Debian Linux 10.0
Fedoraproject Fedora 32
Fedoraproject Fedora 33
Fedoraproject Fedora 34
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37884
CVE-2024-6003
remote
brute force
information disclosure
CVE-2024-27801
CVE-2024-30078
CVE-2024-31870
CVE-2024-6042
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »