rpm package
opensuse/opera&distro=openSUSE Leap 15.5 NonFree
pkg:rpm/opensuse/opera&distro=openSUSE%20Leap%2015.5%20NonFree
Vulnerabilities (188)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-0517 | Hig | 8.8 | < 106.0.4998.52-lp155.3.33.1 | 106.0.4998.52-lp155.3.33.1 | Jan 16, 2024 | Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2024-0225 | Hig | 8.8 | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2024-0224 | Hig | 8.8 | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2024-0223 | Hig | 8.8 | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2024-0222 | Hig | 8.8 | < 106.0.4998.28-lp155.3.30.1 | 106.0.4998.28-lp155.3.30.1 | Jan 4, 2024 | Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-7024 | Hig | 8.8 | KEV | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 21, 2023 | Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
| CVE-2023-6707 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in CSS in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) | |
| CVE-2023-6706 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in FedCM in Google Chrome prior to 120.0.6099.109 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6705 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in WebRTC in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6704 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in libavif in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted image file. (Chromium security severity: High) | |
| CVE-2023-6703 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Use after free in Blink in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6702 | Hig | 8.8 | < 106.0.4998.19-lp155.3.27.1 | 106.0.4998.19-lp155.3.27.1 | Dec 14, 2023 | Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6351 | Hig | 8.8 | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High) | |
| CVE-2023-6350 | Hig | 8.8 | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High) | |
| CVE-2023-6348 | Hig | 8.8 | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Type Confusion in Spellcheck in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6347 | Hig | 8.8 | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in Mojo in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6346 | Hig | 8.8 | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Use after free in WebAudio in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-6345 | Cri | 9.6 | KEV | < 105.0.4970.34-lp155.3.24.1 | 105.0.4970.34-lp155.3.24.1 | Nov 29, 2023 | Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High) |
| CVE-2023-6112 | Hig | 8.8 | < 105.0.4970.21-lp155.3.21.1 | 105.0.4970.21-lp155.3.21.1 | Nov 15, 2023 | Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2023-5997 | Hig | 8.8 | < 105.0.4970.21-lp155.3.21.1 | 105.0.4970.21-lp155.3.21.1 | Nov 15, 2023 | Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
- affected < 106.0.4998.52-lp155.3.33.1fixed 106.0.4998.52-lp155.3.33.1
Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.28-lp155.3.30.1fixed 106.0.4998.28-lp155.3.30.1
Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in CSS in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in FedCM in Google Chrome prior to 120.0.6099.109 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in WebRTC in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in libavif in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted image file. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Use after free in Blink in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 106.0.4998.19-lp155.3.27.1fixed 106.0.4998.19-lp155.3.27.1
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Type Confusion in Spellcheck in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in Mojo in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Use after free in WebAudio in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.34-lp155.3.24.1fixed 105.0.4970.34-lp155.3.24.1
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
- affected < 105.0.4970.21-lp155.3.21.1fixed 105.0.4970.21-lp155.3.21.1
Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 105.0.4970.21-lp155.3.21.1fixed 105.0.4970.21-lp155.3.21.1
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Page 4 of 10