![Symantec endpoint protection latest version 12.1.6](https://cdn1.cdnme.se/5447227/9-3/15_64e61dfcddf2b36505b4c7c9.png)
Type confusion in V8 in Google Chrome prior to 1.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Use after free in Skia in Google Chrome prior to 1.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Heap buffer overflow in WebSQL in Google Chrome prior to 1.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 1.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. Use after free in Permissions API in Google Chrome prior to 1.119 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page.
![symantec endpoint protection latest version 12.1.6 symantec endpoint protection latest version 12.1.6](https://cdn.slidesharecdn.com/ss_thumbnails/sep11bestpractices-140807001938-phpapp01-thumbnail-4.jpg)
Use after free in Safe Browsing in Google Chrome prior to 1.119 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. Use after free in Peer Connection in Google Chrome prior to 1.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Use after free in V8 in Google Chrome prior to 1.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Use after free in Speech Recognition in Google Chrome prior to 1.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Use after free in Web Workers in Google Chrome prior to 1.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Use after free in WebCodecs in Google Chrome prior to 1.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Type confusion in V8 in Google Chrome prior to 1.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Heap buffer overflow in Crashpad in Google Chrome on Android prior to 1.106 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. If you want to see a complete summary for this CPE, please contact us.
![Symantec endpoint protection latest version 12.1.6](https://cdn1.cdnme.se/5447227/9-3/15_64e61dfcddf2b36505b4c7c9.png)