chromium-browser vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium-browser package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Open Redirect

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<62.0.3202.89-0ubuntu0.17.04.1386
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Arbitrary Code Injection

<55.0.2883.87-0ubuntu1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Type Conversion or Cast

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-bounds Write

<63.0.3239.84-0ubuntu0.17.04.1
  • M
CVE-2016-5194

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.89-0ubuntu0.17.04.1386
  • M
CVE-2016-9652

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Integer Overflow or Wraparound

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Permission Assignment for Critical Resource

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.75-0ubuntu0.17.04.1384
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cross-site Scripting (XSS)

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cryptographic Issues

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Integer Overflow or Wraparound

<62.0.3202.62-0ubuntu0.17.04.1379
  • L
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Cross-site Scripting (XSS)

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-bounds Read

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Exposure of Resource to Wrong Sphere

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15387

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15391

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • L
Cross-site Scripting (XSS)

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Cross-site Scripting (XSS)

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Race Condition

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Privilege Management

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
CVE-2017-5120

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Race Condition

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Incorrect Type Conversion or Cast

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • L
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
CVE-2017-5078

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Incorrect Permission Assignment for Critical Resource

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Use After Free

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Cross-site Scripting (XSS)

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Preservation of Permissions

<57.0.2987.98-0ubuntu1.1348
  • M
Race Condition

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
Integer Overflow or Wraparound

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Input Validation

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Missing Encryption of Sensitive Data

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5022

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
NULL Pointer Dereference

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5013

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5015

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5027

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Numeric Errors

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Security Features

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Use After Free

<53.0.2785.143-0ubuntu1.1307
  • M
Information Exposure

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
CVE-2016-1684

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
CVE-2016-1679

<51.0.2704.79-0ubuntu2~cm1
  • M
Improper Input Validation

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
CVE-2016-3679

<49.0.2623.108-0ubuntu1.1233
  • M
Out-of-Bounds

<49.0.2623.108-0ubuntu1.1233
  • M
CVE-2016-2052

<48.0.2564.82-0ubuntu1.1222
  • M
Improper Input Validation

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2016-2051

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2015-8548

<47.0.2526.106-0ubuntu1.1221
  • M
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-6774

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-8478

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-7834

<47.0.2526.73-0ubuntu1.1218
  • L
Race Condition

<47.0.2526.73-0ubuntu1.1218
  • M
Improper Access Control

<45.0.2454.101-0ubuntu1.1201
  • M
CVE-2015-6581

<45.0.2454.85-0ubuntu1.1198
  • M
CVE-2015-6580

<45.0.2454.85-0ubuntu1.1198
  • M
Numeric Errors

<44.0.2403.89-0ubuntu1.1195
  • M
Code

<44.0.2403.89-0ubuntu1.1195
  • M
Out-of-Bounds

<44.0.2403.89-0ubuntu1.1195
  • L
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-3910

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-3333

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-1230

<41.0.2272.76-0ubuntu1.1134
  • M
CVE-2015-2238

<41.0.2272.76-0ubuntu1.1134
  • M
Code

<40.0.2214.94-0ubuntu1.1120
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2015-1346

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2014-7933

<40.0.2214.94-0ubuntu1.1120
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Improper Data Handling

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2014-3200

<38.0.2125.111-0ubuntu1.1103
  • M
CVE-2014-7967

<38.0.2125.111-0ubuntu1.1103
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Arbitrary Code Injection

<38.0.2125.111-0ubuntu1.1103
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
CVE-2014-1735

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Access Restriction Bypass

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Out-of-Bounds

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
CVE-2014-1704

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
CVE-2013-6668

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Improper Input Validation

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Out-of-Bounds

<28.0.1500.52-0ubuntu2
  • L
CVE-2013-2632

<28.0.1500.52-0ubuntu2
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Resource Management Errors

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Information Exposure

<10.0.648.127~r76697-0ubuntu1
  • M
CVE-2011-1193

<10.0.648.127~r76697-0ubuntu1