Search CVE reports
1 – 10 of 15 results
Some fixes available 19 of 33
Integer underflow in the LCodeGen::PrepareKeyedOperand function in arm/lithium-codegen-arm.cc in Google V8 before 3.25.28.16, as used in Google Chrome before 35.0.1916.114, allows remote attackers to cause a denial of service or...
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Fixed |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 3 of 17
Multiple unspecified vulnerabilities in Google V8 before 3.24.35.22, as used in Google Chrome before 34.0.1847.116, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Not affected |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 3 of 17
Google V8, as used in Google Chrome before 34.0.1847.116, does not properly implement lazy deoptimization, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact...
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Not affected |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 3 of 17
Google V8, as used in Google Chrome before 34.0.1847.116, does not properly use numeric casts during handling of typed arrays, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly...
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Not affected |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 3 of 17
Cross-site scripting (XSS) vulnerability in the Runtime_SetPrototype function in runtime.cc in Google V8, as used in Google Chrome before 34.0.1847.116, allows remote attackers to inject arbitrary web script or HTML via...
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Not affected |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 13 of 27
Google V8, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via...
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Fixed |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 13 of 27
Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, as used in Google Chrome before 33.0.1750.149, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Fixed |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 13 of 27
Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
5 affected packages
chromium-browser, libv8, libv8-3.14, oxide-qt, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Fixed |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| oxide-qt | — | — | — | — | Not in release |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 13 of 27
The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Google V8 before 3.22.24.16, as used in Google Chrome before 32.0.1700.102, allows remote attackers to cause a denial of service (memory corruption) or possibly...
4 affected packages
chromium-browser, libv8, libv8-3.14, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Fixed |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |
Some fixes available 4 of 20
The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a denial of service (out-of-bounds read) via...
4 affected packages
chromium-browser, libv8, libv8-3.14, qtjsbackend-opensource-src
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | Not affected |
| libv8 | — | — | — | — | Not in release |
| libv8-3.14 | — | — | — | — | Ignored |
| qtjsbackend-opensource-src | — | — | — | — | Not in release |