Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-6074

Опубликовано: 14 нояб. 2018
Источник: debian
EPSS Низкий

Описание

Failure to apply Mark-of-the-Web in Downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to bypass OS level controls via a crafted HTML page.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromium-browserfixed65.0.3325.146-1package
chromium-browserend-of-lifejessiepackage
chromium-browserend-of-lifewheezypackage

EPSS

Процентиль: 67%
0.00548
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 7 лет назад

Failure to apply Mark-of-the-Web in Downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to bypass OS level controls via a crafted HTML page.

CVSS3: 6.5
redhat
почти 8 лет назад

Failure to apply Mark-of-the-Web in Downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to bypass OS level controls via a crafted HTML page.

CVSS3: 8.8
nvd
около 7 лет назад

Failure to apply Mark-of-the-Web in Downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to bypass OS level controls via a crafted HTML page.

CVSS3: 8.8
github
больше 3 лет назад

Failure to apply Mark-of-the-Web in Downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to bypass OS level controls via a crafted HTML page.

suse-cvrf
почти 8 лет назад

Security update for Chromium

EPSS

Процентиль: 67%
0.00548
Низкий