Описание
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2016-1656
- https://crbug.com/570750
- https://security.gentoo.org/glsa/201605-02
- http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_13.html
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00040.html
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00041.html
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00049.html
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00050.html
- http://rhn.redhat.com/errata/RHSA-2016-0638.html
Связанные уязвимости
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
The download implementation in Google Chrome before 50.0.2661.75 on An ...
Уязвимость браузера Google Chrome, позволяющая нарушителю обойти существующие ограничения имени каталога