rpm package
opensuse/opera&distro=openSUSE Leap 15.5 NonFree
pkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.5%20NonFree
Vulnerabilities (188)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-0517 | — | < 106.0.4998.52-lp155.3.33.1 | 106.0.4998.52-lp155.3.33.1 | Jan 16, 2024 | Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2024-0225 | — | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2024-0224 | — | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2024-0223 | — | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2024-0222 | — | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-7024 | — | KEV | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 21, 2023 | Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6707 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in CSS in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) | ||
| CVE-2023-6706 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in FedCM in Google Chrome prior to 120.0.6099.109 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6705 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in WebRTC in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6704 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in libavif in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted image file. (Chromium security severity: High) | ||
| CVE-2023-6703 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in Blink in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6702 | — | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6345 | — | KEV | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High) | |
| CVE-2023-6351 | — | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High) | ||
| CVE-2023-6350 | — | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High) | ||
| CVE-2023-6346 | — | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in WebAudio in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6347 | — | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in Mojo in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6348 | — | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Type Confusion in Spellcheck in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-6112 | — | < 105.0.4970.21-lp155.3.21.1 | 105.0.4970.21-lp155.3.21.1 | Nov 15, 2023 | Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | ||
| CVE-2023-5997 | — | < 105.0.4970.21-lp155.3.21.1 | 105.0.4970.21-lp155.3.21.1 | Nov 15, 2023 | Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
- CVE-2024-0517Jan 16, 2024affected < 106.0.4998.52-lp155.3.33.1fixed 106.0.4998.52-lp155.3.33.1
Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-0225Jan 4, 2024affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-0224Jan 4, 2024affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-0223Jan 4, 2024affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-0222Jan 4, 2024affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6707Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in CSS in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
- CVE-2023-6706Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in FedCM in Google Chrome prior to 120.0.6099.109 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6705Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in WebRTC in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6704Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in libavif in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted image file. (Chromium security severity: High)
- CVE-2023-6703Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in Blink in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6702Dec 14, 2023affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
- CVE-2023-6351Nov 29, 2023affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High)
- CVE-2023-6350Nov 29, 2023affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High)
- CVE-2023-6346Nov 29, 2023affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in WebAudio in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6347Nov 29, 2023affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in Mojo in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6348Nov 29, 2023affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Type Confusion in Spellcheck in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-6112Nov 15, 2023affected < 105.0.4970.21-lp155.3.21.1fixed 105.0.4970.21-lp155.3.21.1
Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2023-5997Nov 15, 2023affected < 105.0.4970.21-lp155.3.21.1fixed 105.0.4970.21-lp155.3.21.1
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Page 4 of 10