Platform External V8 vulnerabilities
6 known vulnerabilities affecting platform/external_v8.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
UNKNOWN6
Vulnerabilities
Page 1 of 1
CVE-2021-0396P2UNKNOWN≥ 8.1:0, < 8.1:2021-03-01≥ 9:0, < 9:2021-03-01+2 more2021-03-01
CVE-2021-0396 CVE-2021-0396: In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm
In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2020-0224P3UNKNOWN≥ 8.0:0, < 8.0:2020-07-01≥ 8.1:0, < 8.1:2020-07-01+2 more2020-07-01
CVE-2020-0224 CVE-2020-0224: In FastKeyAccumulator::GetKeysSlow of keys
In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code execution when processing a proxy configuration with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0515P3UNKNOWN≥ 8.1:0, < 8.1:2021-07-05≥ 9:0, < 9:2021-07-05+2 more2021-07-01
CVE-2021-0515 CVE-2021-0515: In Factory::CreateStrictFunctionMap of factory
In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2020-0240P3UNKNOWN≥ 10:0, < 10:2020-08-012020-08-01
CVE-2020-0240 CVE-2020-0240: In NewFixedDoubleArray of factory
In NewFixedDoubleArray of factory.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0514P3UNKNOWN≥ 8.1:0, < 8.1:2021-07-05≥ 9:0, < 9:2021-07-05+2 more2021-07-01
CVE-2021-0514 CVE-2021-0514: In several functions of the V8 library, there is a possible use after free due to a race condition
In several functions of the V8 library, there is a possible use after free due to a race condition. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0393P3UNKNOWN≥ 8.1:0, < 8.1:2021-03-01≥ 9:0, < 9:2021-03-01+2 more2021-03-01
CVE-2021-0393 CVE-2021-0393: In Scanner::LiteralBuffer::NewCapacity of scanner
In Scanner::LiteralBuffer::NewCapacity of scanner.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if an attacker can supply a malicious PAC file, with no additional execution privileges needed. User interaction is not needed for exploitation.
osv