Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r235-v62q-qm9r

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

EPSS

Процентиль: 71%
0.00677
Низкий

Связанные уязвимости

ubuntu
около 11 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

nvd
около 11 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

debian
около 11 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 ...

fstec
около 11 лет назад

Уязвимость браузера Google Chrome, позволяющая удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации

EPSS

Процентиль: 71%
0.00677
Низкий