Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g87j-f4vq-mvgc

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remote attackers to bypass intended scheme restrictions via a crafted PDF document, as demonstrated by a document with a link to a chrome://settings URL.

PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remote attackers to bypass intended scheme restrictions via a crafted PDF document, as demonstrated by a document with a link to a chrome://settings URL.

EPSS

Процентиль: 69%
0.00597
Низкий

Связанные уязвимости

ubuntu
около 10 лет назад

PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remote attackers to bypass intended scheme restrictions via a crafted PDF document, as demonstrated by a document with a link to a chrome://settings URL.

redhat
около 10 лет назад

PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remote attackers to bypass intended scheme restrictions via a crafted PDF document, as demonstrated by a document with a link to a chrome://settings URL.

nvd
около 10 лет назад

PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remote attackers to bypass intended scheme restrictions via a crafted PDF document, as demonstrated by a document with a link to a chrome://settings URL.

debian
около 10 лет назад

PDFium, as used in Google Chrome before 47.0.2526.73, does not properl ...

suse-cvrf
около 10 лет назад

Security update for Chromium

EPSS

Процентиль: 69%
0.00597
Низкий