Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59v8-q5hp-9q95

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The WebMediaPlayerAndroid::load function in content/renderer/media/android/webmediaplayer_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly interact with redirects, which allows remote attackers to bypass the Same Origin Policy via a crafted web site that hosts a video stream.

The WebMediaPlayerAndroid::load function in content/renderer/media/android/webmediaplayer_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly interact with redirects, which allows remote attackers to bypass the Same Origin Policy via a crafted web site that hosts a video stream.

EPSS

Процентиль: 48%
0.00246
Низкий

Связанные уязвимости

nvd
больше 11 лет назад

The WebMediaPlayerAndroid::load function in content/renderer/media/android/webmediaplayer_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly interact with redirects, which allows remote attackers to bypass the Same Origin Policy via a crafted web site that hosts a video stream.

EPSS

Процентиль: 48%
0.00246
Низкий