Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xqh7-3533-9v4f

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote attackers to bypass intended sandbox restrictions by leveraging renderer access.

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote attackers to bypass intended sandbox restrictions by leveraging renderer access.

EPSS

Процентиль: 41%
0.00183
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 11 лет назад

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote attackers to bypass intended sandbox restrictions by leveraging renderer access.

nvd
около 11 лет назад

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote attackers to bypass intended sandbox restrictions by leveraging renderer access.

debian
около 11 лет назад

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in G ...

fstec
около 11 лет назад

Уязвимость браузера Google Chrome, позволяющая злоумышленнику обойти ограничения песочницы

fstec
около 11 лет назад

Уязвимость браузера Google Chrome, позволяющая злоумышленнику обойти ограничения песочницы

EPSS

Процентиль: 41%
0.00183
Низкий

Дефекты

CWE-20