chromium-browser vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium-browser package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Open Redirect

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<62.0.3202.89-0ubuntu0.17.04.1386
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Arbitrary Code Injection

<55.0.2883.87-0ubuntu1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Type Conversion or Cast

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-bounds Write

<63.0.3239.84-0ubuntu0.17.04.1
  • M
CVE-2016-5194

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.89-0ubuntu0.17.04.1386
  • M
CVE-2016-9652

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Use After Free

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Integer Overflow or Wraparound

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Incorrect Permission Assignment for Critical Resource

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<62.0.3202.75-0ubuntu0.17.04.1384
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cross-site Scripting (XSS)

<63.0.3239.84-0ubuntu0.17.04.1
  • L
Cryptographic Issues

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Improper Input Validation

<63.0.3239.84-0ubuntu0.17.04.1
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Integer Overflow or Wraparound

<62.0.3202.62-0ubuntu0.17.04.1379
  • L
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Cross-site Scripting (XSS)

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Exposure of Resource to Wrong Sphere

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15387

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Use After Free

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-bounds Write

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
CVE-2017-15391

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-bounds Read

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Improper Input Validation

<62.0.3202.62-0ubuntu0.17.04.1379
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Race Condition

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
CVE-2017-5120

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Use After Free

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • L
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Incorrect Permission Assignment for Critical Resource

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Cross-site Scripting (XSS)

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Incorrect Type Conversion or Cast

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • L
Cross-site Scripting (XSS)

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Out-of-bounds Read

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Incorrect Type Conversion or Cast

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Out-of-Bounds

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Information Exposure

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Incorrect Type Conversion or Cast

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Information Exposure

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Use After Free

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Use After Free

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Out-of-Bounds

<61.0.3163.100-0ubuntu0.17.04.1377
  • M
Improper Input Validation

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Race Condition

<58.0.3029.81-0ubuntu2.17.04.1350
  • M
Improper Privilege Management

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
CVE-2017-5078

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Improper Input Validation

<59.0.3071.109-0ubuntu0.17.04.1360
  • L
Information Exposure

<59.0.3071.109-0ubuntu0.17.04.1360
  • M
Improper Input Validation

<60.0.3112.78-0ubuntu0.17.04.1363
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Integer Overflow or Wraparound

<58.0.3029.96-0ubuntu0.17.04.1352
  • M
Race Condition

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-Bounds

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Integer Overflow or Wraparound

<57.0.2987.98-0ubuntu1.1348
  • M
Cross-site Scripting (XSS)

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Preservation of Permissions

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Out-of-bounds Write

<57.0.2987.98-0ubuntu1.1348
  • M
Use After Free

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Information Exposure

<57.0.2987.98-0ubuntu1.1348
  • M
Improper Input Validation

<57.0.2987.98-0ubuntu1.1348
  • M
Missing Encryption of Sensitive Data

<57.0.2987.98-0ubuntu1.1348
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5027

<56.0.2924.76-0ubuntu2.1343
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5015

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5013

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Information Exposure

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Out-of-Bounds

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
NULL Pointer Dereference

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
Cross-site Scripting (XSS)

<56.0.2924.76-0ubuntu2.1343
  • M
CVE-2017-5022

<56.0.2924.76-0ubuntu2.1343
  • M
Improper Restriction of Rendered UI Layers or Frames

<56.0.2924.76-0ubuntu2.1343
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Numeric Errors

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Write

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Information Exposure

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Improper Input Validation

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Improper Access Control

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-bounds Read

<55.0.2883.87-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<55.0.2883.87-0ubuntu1
  • M
Use After Free

<55.0.2883.87-0ubuntu1
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Integer Overflow or Wraparound

<53.0.2785.143-0ubuntu1.1307
  • M
Improper Data Handling

<55.0.2883.87-0ubuntu1
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Out-of-Bounds

<53.0.2785.143-0ubuntu1.1307
  • M
Use After Free

<53.0.2785.143-0ubuntu1.1307
  • M
Security Features

<53.0.2785.143-0ubuntu1.1307
  • M
CVE-2016-1679

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
Information Exposure

<51.0.2704.79-0ubuntu2~cm1
  • M
CVE-2016-1684

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<51.0.2704.79-0ubuntu2~cm1
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
Improper Input Validation

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<50.0.2661.102-0ubuntu1.1242
  • M
Out-of-Bounds

<49.0.2623.108-0ubuntu1.1233
  • M
CVE-2016-3679

<49.0.2623.108-0ubuntu1.1233
  • M
CVE-2016-2051

<48.0.2564.82-0ubuntu1.1222
  • M
Improper Input Validation

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2016-2052

<48.0.2564.82-0ubuntu1.1222
  • M
CVE-2015-8548

<47.0.2526.106-0ubuntu1.1221
  • M
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-6774

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-8478

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-7834

<47.0.2526.73-0ubuntu1.1218
  • L
Race Condition

<47.0.2526.73-0ubuntu1.1218
  • M
Improper Access Control

<45.0.2454.101-0ubuntu1.1201
  • M
CVE-2015-6580

<45.0.2454.85-0ubuntu1.1198
  • M
CVE-2015-6581

<45.0.2454.85-0ubuntu1.1198
  • M
Out-of-Bounds

<44.0.2403.89-0ubuntu1.1195
  • M
Code

<44.0.2403.89-0ubuntu1.1195
  • M
Numeric Errors

<44.0.2403.89-0ubuntu1.1195
  • L
Out-of-Bounds

<47.0.2526.73-0ubuntu1.1218
  • M
CVE-2015-3910

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-3333

<43.0.2357.81-0ubuntu1.1179
  • M
CVE-2015-2238

<41.0.2272.76-0ubuntu1.1134
  • M
CVE-2015-1230

<41.0.2272.76-0ubuntu1.1134
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2014-7933

<40.0.2214.94-0ubuntu1.1120
  • M
Out-of-Bounds

<40.0.2214.94-0ubuntu1.1120
  • M
Improper Data Handling

<40.0.2214.94-0ubuntu1.1120
  • M
Code

<40.0.2214.94-0ubuntu1.1120
  • M
CVE-2015-1346

<40.0.2214.94-0ubuntu1.1120
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Resource Management Errors

<38.0.2125.111-0ubuntu1.1103
  • M
Arbitrary Code Injection

<38.0.2125.111-0ubuntu1.1103
  • M
CVE-2014-3200

<38.0.2125.111-0ubuntu1.1103
  • M
CVE-2014-7967

<38.0.2125.111-0ubuntu1.1103
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Numeric Errors

<35.0.1916.153-0ubuntu1~pkg1029
  • M
CVE-2014-1735

<35.0.1916.153-0ubuntu1~pkg1029
  • M
Access Restriction Bypass

<35.0.1916.153-0ubuntu1~pkg1029
  • M
CVE-2014-1704

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Out-of-Bounds

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
CVE-2013-6668

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Improper Input Validation

<33.0.1750.152-0ubuntu1~pkg995.1
  • M
Out-of-Bounds

<28.0.1500.52-0ubuntu2
  • L
CVE-2013-2632

<28.0.1500.52-0ubuntu2
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Resource Management Errors

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
Out-of-Bounds

<24.0.1312.56-0ubuntu1
  • M
CVE-2011-1193

<10.0.648.127~r76697-0ubuntu1
  • M
Information Exposure

<10.0.648.127~r76697-0ubuntu1