issues
search
ericmckean
/
google-security-research
Automatically exported from code.google.com/p/google-security-research
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Android BitmapFactory.decodeStream 9patch PNG heap overflow
#234
GoogleCodeExporter
closed
9 years ago
2
[deleted issue]
#233
GoogleCodeExporter
closed
9 years ago
0
[deleted issue]
#232
GoogleCodeExporter
closed
9 years ago
0
[deleted issue]
#231
GoogleCodeExporter
closed
9 years ago
0
[deleted issue]
#230
GoogleCodeExporter
closed
9 years ago
0
Type Confusion in NetConnection ASnative
#229
GoogleCodeExporter
closed
9 years ago
5
[deleted issue]
#228
GoogleCodeExporter
closed
9 years ago
0
[deleted issue]
#227
GoogleCodeExporter
closed
9 years ago
0
Microsoft Office 2007/2010 RTF callout drawing primitive memory corruption
#226
GoogleCodeExporter
closed
9 years ago
2
Flash PCRE regex compilation extended unicode comment arbitrary bytecode execution
#225
GoogleCodeExporter
closed
9 years ago
4
[deleted issue]
#224
GoogleCodeExporter
closed
9 years ago
0
Flash heap buffer overflow when stringifying Proxy objects
#223
GoogleCodeExporter
closed
9 years ago
7
Windows: Local WebDAV NTLM Reflection Elevation of Privilege
#222
GoogleCodeExporter
closed
9 years ago
14
OS X+iOS IOKit kernel code execution due to bad cast when using kernel c++ reflection in IOSurfaceRoot
#221
GoogleCodeExporter
closed
9 years ago
9
Windows: AppInfo AiCheckSecureApplicationDirectory Bypass
#220
GoogleCodeExporter
closed
9 years ago
7
Windows: NtUserGetClipboardAccessToken Token Leak
#219
GoogleCodeExporter
closed
9 years ago
4
Flash heap buffer overflow due to integer overflow in JSON.stringify
#218
GoogleCodeExporter
closed
9 years ago
5
[deleted issue]
#217
GoogleCodeExporter
closed
9 years ago
0
Flash PCRE regex compilation recursion offset arbitrary bytecode execution
#216
GoogleCodeExporter
closed
9 years ago
6
Windows: Registry Virtualization TOCTOU User Check
#215
GoogleCodeExporter
closed
9 years ago
8
OS X IOKit kIOMapReadOnly read-only kernel shared memory bypass leading to kernel memory corruption bug in IOAccelContext2
#214
GoogleCodeExporter
closed
9 years ago
6
Windows: Console Driver Job Object Process Limit Bypass
#213
GoogleCodeExporter
closed
9 years ago
6
NVidia Windows Display Driver: Admin Impersonation Check Bypass
#212
GoogleCodeExporter
closed
9 years ago
4
FreeType 2.5.4 Type42 parsing invalid free in "t42_parse_sfnts"
#211
GoogleCodeExporter
closed
9 years ago
3
Flash: bad cast during garbage collection from KeenTeam
#210
GoogleCodeExporter
closed
9 years ago
5
Flash: bad cast(?) in display list handling from KeenTean
#209
GoogleCodeExporter
closed
9 years ago
7
Flash PCRE pcre_compile character class/ims options heap overflow
#208
GoogleCodeExporter
closed
9 years ago
7
Flash: use-after-free in display list handling from KeenTeam
#207
GoogleCodeExporter
closed
9 years ago
7
Windows: Limited Bypass of Traverse Permissions in Kernel Object Manager
#206
GoogleCodeExporter
closed
9 years ago
2
Adobe Flash Calling Superconstructor More Than Once Can Lead to Inconsistent User Data and Destroy Func
#205
GoogleCodeExporter
closed
9 years ago
6
[deleted issue]
#204
GoogleCodeExporter
closed
9 years ago
0
[deleted issue]
#203
GoogleCodeExporter
closed
9 years ago
0
LibreSSL DTLS double free
#202
GoogleCodeExporter
closed
9 years ago
3
[deleted issue]
#201
GoogleCodeExporter
closed
9 years ago
0
LibreSSL vulnerable to Denial-of-Service (null pointer dereference)
#200
GoogleCodeExporter
closed
9 years ago
5
Flash PCRE regex compilation logic issue
#199
GoogleCodeExporter
closed
9 years ago
7
Windows: CreateProcessAsUser Impersonation Token Bypass
#198
GoogleCodeExporter
closed
9 years ago
5
FreeType 2.5.3 multiple unchecked function calls returning FT_Error
#197
GoogleCodeExporter
closed
9 years ago
3
FreeType 2.5.3 OpenType parsing heap-based out-of-bounds read in "tt_sbit_decoder_load_image"
#196
GoogleCodeExporter
closed
9 years ago
4
FreeType 2.5.3 TrueType parsing heap-based out-of-bounds read in "tt_face_load_hdmx"
#195
GoogleCodeExporter
closed
9 years ago
4
FreeType 2.5.3 SFNT kern parsing out-of-bounds read in "tt_face_load_kern"
#194
GoogleCodeExporter
closed
9 years ago
4
netkvm.sys (RedHat virtio driver) BSoD on malformed IPv4 packet
#193
GoogleCodeExporter
closed
9 years ago
4
XMLSocket Destructor Does Not Get Cleared Before Setting User Data in connect
#192
GoogleCodeExporter
closed
9 years ago
4
Exploitable Kernel NULL dereference in IGAccelCLContext::map_user_memory
#191
GoogleCodeExporter
closed
9 years ago
2
FreeType 2.5.3 CFF hintmap building stack-based arbitrary out-of-bounds write
#190
GoogleCodeExporter
closed
9 years ago
5
IE11: CShdocvwBroker::MOTWCreateFileW EPM Local File Information Disclosure
#189
GoogleCodeExporter
closed
9 years ago
3
FreeType 2.5.3 BDF parsing NULL pointer dereference in "_bdf_parse_glyphs"
#188
GoogleCodeExporter
closed
9 years ago
4
FreeType 2.5.3 Type42 parsing use-after-free in "FT_Stream_TryRead" (embedded BDF loading)
#187
GoogleCodeExporter
closed
9 years ago
5
IE11: CShdocvwBroker::EditWith EPM Sandbox Escape
#186
GoogleCodeExporter
closed
9 years ago
3
FreeType 2.5.3 CFF CharString parsing heap-based buffer overflow in "cff_builder_add_point"
#185
GoogleCodeExporter
closed
9 years ago
5
Previous
Next