Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-1281

Опубликовано: 23 июл. 2015
Источник: debian
EPSS Низкий

Описание

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromium-browserfixed44.0.2403.89-1package
chromium-browserend-of-lifewheezypackage
chromium-browserend-of-lifesqueezepackage

EPSS

Процентиль: 76%
0.00976
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

redhat
больше 10 лет назад

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

nvd
больше 10 лет назад

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

github
больше 3 лет назад

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

EPSS

Процентиль: 76%
0.00976
Низкий