chromium-browser vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium-browser package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Open Redirect

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<62.0.3202.89-0ubuntu0.17.04.1386
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Arbitrary Code Injection

<55.0.2883.87-0ubuntu1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Type Conversion or Cast

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-bounds Write

<63.0.3239.84-0ubuntu0.17.04.1
  • M
CVE-2016-5194

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.89-0ubuntu0.17.04.1386
  • M
CVE-2016-9652

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Integer Overflow or Wraparound

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Permission Assignment for Critical Resource

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.75-0ubuntu0.17.04.1384
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cross-site Scripting (XSS)

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cryptographic Issues

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Integer Overflow or Wraparound

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • L
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Cross-site Scripting (XSS)

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-bounds Read

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Exposure of Resource to Wrong Sphere

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15387

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15391

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Cross-site Scripting (XSS)

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Cross-site Scripting (XSS)

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • L
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
CVE-2017-5120

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Incorrect Type Conversion or Cast

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Race Condition

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Race Condition

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Incorrect Permission Assignment for Critical Resource

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Privilege Management

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
CVE-2017-5078

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
Cross-site Scripting (XSS)

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Integer Overflow or Wraparound

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Preservation of Permissions

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Race Condition

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Missing Encryption of Sensitive Data

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Input Validation

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
CVE-2017-5013

<56.0.2924.76-0ubuntu2.1343
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
NULL Pointer Dereference

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5015

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5027

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5022

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Numeric Errors

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Security Features

<53.0.2785.143-0ubuntu1.1307
  • M
Use After Free

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
CVE-2016-1684

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
Information Exposure

<51.0.2704.79-0ubuntu2~cm1
  • M
CVE-2016-1679

<51.0.2704.79-0ubuntu2~cm1
  • M
Improper Input Validation

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
CVE-2016-3679

<49.0.2623.108-0ubuntu1.1233
  • M
Out-of-Bounds

<49.0.2623.108-0ubuntu1.1233
  • M
CVE-2016-2051

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2016-2052

<48.0.2564.82-0ubuntu1.1222
  • M
Improper Input Validation

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2015-8548

<47.0.2526.106-0ubuntu1.1221
  • M
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-8478

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-6774

<47.0.2526.73-0ubuntu1.1218
  • L
Race Condition

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-7834

<47.0.2526.73-0ubuntu1.1218
  • M
Improper Access Control

<45.0.2454.101-0ubuntu1.1201
  • M
CVE-2015-6580

<45.0.2454.85-0ubuntu1.1198
  • M
CVE-2015-6581

<45.0.2454.85-0ubuntu1.1198
  • M
Numeric Errors

<44.0.2403.89-0ubuntu1.1195
  • M
Out-of-Bounds

<44.0.2403.89-0ubuntu1.1195
  • M
Code

<44.0.2403.89-0ubuntu1.1195
  • L
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-3910

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-3333

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-2238

<41.0.2272.76-0ubuntu1.1134
  • M
CVE-2015-1230

<41.0.2272.76-0ubuntu1.1134
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2014-7933

<40.0.2214.94-0ubuntu1.1120
  • M
Code

<40.0.2214.94-0ubuntu1.1120
  • M
Improper Data Handling

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2015-1346

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2014-7967

<38.0.2125.111-0ubuntu1.1103
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Arbitrary Code Injection

<38.0.2125.111-0ubuntu1.1103
  • M
CVE-2014-3200

<38.0.2125.111-0ubuntu1.1103
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Access Restriction Bypass

<35.0.1916.153-0ubuntu1~pkg1029
  • M
CVE-2014-1735

<35.0.1916.153-0ubuntu1~pkg1029
  • M
CVE-2014-1704

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Out-of-Bounds

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
CVE-2013-6668

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Improper Input Validation

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Out-of-Bounds

<28.0.1500.52-0ubuntu2
  • L
CVE-2013-2632

<28.0.1500.52-0ubuntu2
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Resource Management Errors

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Information Exposure

<10.0.648.127~r76697-0ubuntu1
  • M
CVE-2011-1193

<10.0.648.127~r76697-0ubuntu1