← Back

Backports

backports

Vendor: Opensuse • 97 CVEs

CVEs (97)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Incorrect eliding of URLs in Omnibox in Google Chrome on iOS prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Insufficient policy enforcement in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Incorrect inheritance of a new document's policy in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.
6Canonical
DebianGoogle+3 more
7Backports
ChromeDebian Linux+4 more
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Insufficient policy enforcement in extensions in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to initiate the extensions installation user interface via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted H...Show more
An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.Show less
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a craft...Show more
An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.Show less
2Google
Opensuse
3Backports
ChromeLeap
Jun 17, 2026
May 23, 2019
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
3Fedoraproject
OpensuseSylabs
4Backports
FedoraLeap+1 more
Jun 17, 2026
May 14, 2019
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An issue was discovered in Singularity 3.1.0 to 3.2.0-rc2, a malicious user with local/network access to the host system (e.g. ssh) could exploit this vulnerability due to insecure permissions allowing a user to edit fil...Show more
An issue was discovered in Singularity 3.1.0 to 3.2.0-rc2, a malicious user with local/network access to the host system (e.g. ssh) could exploit this vulnerability due to insecure permissions allowing a user to edit files within `/run/singularity/instances/sing/<user>/<instance>`. The manipulation of those files can change the behavior of the starter-suid program when instances are joined resulting in potential privilege escalation on the host.Show less
3Fedoraproject
KdeOpensuse
4Backports
FedoraKauth+1 more
Jun 17, 2026
May 7, 2019
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
KDE KAuth before 5.55 allows the passing of parameters with arbitrary types to helpers running as root over DBus via DBusHelperProxy.cpp. Certain types can cause crashes, and trigger the decoding of arbitrary images with...Show more
KDE KAuth before 5.55 allows the passing of parameters with arbitrary types to helpers running as root over DBus via DBusHelperProxy.cpp. Certain types can cause crashes, and trigger the decoding of arbitrary images with dynamically loaded plugins. In other words, KAuth unintentionally causes this plugin code to run as root, which increases the severity of any possible exploitation of a plugin vulnerability.Show less
3Debian
OpensuseRdesktop
4Backports
Debian LinuxLeap+1 more
Nov 21, 2024
Mar 15, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in the function rdp_in_unistr() and results in memory corruption and possibly even a remote code executi...Show more
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in the function rdp_in_unistr() and results in memory corruption and possibly even a remote code execution.Show less
4Canonical
DebianOpensuse+1 more
5Backports
Debian LinuxLeap+2 more
Feb 11, 2025
Dec 26, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.