SECURITY ADVISORIES

Software Flaws found by Krash Consulting.

We have been independently providing our analysis and flaw report we’ve found in various softwares owned by global conglomerates.

SECURITY ADVISORIES

Software Flaws found by Krash Consulting.

We have been independently providing our analysis and flaw report we’ve found in various softwares owned by global conglomerates.

OUR SERVICES

Trusted experts with more than 20 years of experience to secure your business.

We are passionate about security and dedicated towards optimal testing and researched backed solutions.

2022

Google Chrome

CVE-2022-: Heap buffer overflow in GPU

Google Chrome

CVE-2022-0103: use after free in Swiftshader

Chromium OS

CVE-2022-0104: Heap buffer overflow in ANGLE

2021

Google Chrome

CVE-2021-4101: Heap buffer overflow in switchshader

Google Chrome

CVE-2021-4058: Heap buffer overflow in ANGLE

Mozilla Firefox

CVE-2021-23994: Out of bound write due to lazy initialization

Mozilla Firefox

CVE-2021-23981: Texture upload into an unbound backing buffer resulted in an out-of-bound read

Google Chrome

CVE-2021-21233: Heap buffer overflow in ANGLE

2020

Mozilla Firefox

CVE-2020-16048: Buffer overflow in depth pitch calculations for compressed textures

Mozilla Firefox

CVE-2020-26971: Heap buffer overflow in WebGL

2018

Google Chrome

CVE-2018-17466: Texture11 Memory Corruption in ANGLE

Google Chrome

CVE-2018-16082: Stack buffer overflow in SwiftShader

Google Chrome

CVE-2018-6162: Heap buffer overflow in WebGL TexImage3D

Google Chrome

CVE-2018-6154: Heap buffer overflow in WebGL FreeIds

Microsoft Edge

CVE-2018-8387: Memory Corruption Vulnerability

Microsoft Edge

CVE-2018-8262: Memory Corruption Vulnerability

Apple Safari

CVE-2020-26971: Heap buffer overflow in WebGL

Microsoft Excel

CVE-2018-8163: Information Disclosure – Formula Record

Microsoft Excel

CVE-2018-8162: Remote Code Execution – Formula Record

Apple Safari

CVE-2018-4130: Memory Corruption in WebKit webGL

Microsoft Excel

CVE-2018-0796: emote Code Execution Vulnerability

Google Chrome

CVE-2018-6060: Use after free in Blink

Google Chrome

CVE-2018-6073: Heap buffer overflow in WebGL

2017

Mozilla Firefox

CVE-2017-7845: Buffer overflow when drawing and validating elements with ANGLE library using Direct 3D 9

Microsoft Edge

CVE-2017-11844: Information Disclosure Vulnerability

Microsoft Edge

CVE-2017-11845: Memory Corruption Vulnerability

Google Chrome

CVE-2017-5129: Use after free in WebAudio

Google Chrome

CVE-2017-5128: Heap overflow in WebGL

Mozilla Firefox

CVE-2017-7845: Buffer overflow when drawing and validating elements with ANGLE

2015

Google Chrome

CVE-2015-1240: Out of bounds read in webGL

Internet Explorer 11

CVE-2015-1668: CSVGMarkerElement Use-After-Free

Internet Explorer 11

CVE-2015-0043: SVG Marker Use-After-Free

Internet Explorer 11

CVE-2015-0042: SVG Marker Use-After-Free

2014

Internet Explorer 11

CVE-2014-4128: Cell Resizing

Internet Explorer 11

CVE-2014-6354: CSVGSVGElement Use-After Free

Internet Explorer 11

CVE-2014-4145: CElement

Internet Explorer 11

CVE-2014-4050: first-letter Use-After-Free

Internet Explorer 11

CVE-2014-0313: Microsoft IE CSS Property / Unicode Character Handling Heap Buffer Overflow

Microsoft Windows

CVE-2014-0263: Direct2D Crafted 2D Geometric
Figure Handling Memory Corruption

2013

Internet Explorer 10

CVE-2013-3150: CElement Use-After-Free 

Internet Explorer 10

CVE-2013-3125: CTreePos Use-After-Free

Internet Explorer 10

CVE-2013-3124: SmartDispClient Type Confusion

Internet Explorer 10

CVE-2013-3118: CSVGMaskElement Double-Free

Internet Explorer 10

CVE-2013-0022: LsGetTrailInfo

Internet Explorer 10

CVE-2013-0018: SetCapture

2012

Internet Explorer 9

CVE-2012-1538: CFormElement

Internet Explorer 9

CVE-2012-1524: Attribute Remove

GDI+

CVE-2012-0165: Record Type Vulnerability

Excel SXLI

CVE-2012-0184: Record Memory Corruption Vulnerability

Excel

CVE-2012-0142: File Format Memory Corruption in OBJECTLINK Record Vulnerability

Excel

CVE-2012-0141: File Format Memory Corruption Vulnerability

Google Chrome

CVE-2011-3065: Memory corruption in Skia

2011

Excel

CVE-2011-1990: Out of Bounds Array Indexing Vulnerability

RealPlayer

CVE-2011-2945:SIPR Heap Buffer Overflow Vulnerability

Excel

CVE-2011-1274: Out of Bounds Array Access Vulnerability

Excel

CVE-2011-1277: Memory Corruption Vulnerability

2010

Excel

CVE-2010-3232: File Format Parsing Vulnerability

RealPlayer

CVE-2010-4386: RealMedia Memory Heap Corruption Vulnerability

RealPlayer

CVE-2010-4387: RealAudio Codec Memory Corruption Vulnerability