Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-7905

Опубликовано: 18 нояб. 2014
Источник: redhat
CVSS2: 4
EPSS Низкий

Описание

Google Chrome before 39.0.2171.65 on Android does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY_BROWSABLE, which allows remote attackers to bypass intended access restrictions via a crafted web site.

Отчет

Not vulnerable. This issue does not affect the version of chromium-browser as shipped with Red Hat Enterprise Linux 6.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6chromium-browserNot affected

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=1165654chromium-browser: Flaw allowing navigation to intents that do not have the BROWSABLE category

EPSS

Процентиль: 43%
0.0021
Низкий

4 Medium

CVSS2

Связанные уязвимости

ubuntu
около 11 лет назад

Google Chrome before 39.0.2171.65 on Android does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY_BROWSABLE, which allows remote attackers to bypass intended access restrictions via a crafted web site.

nvd
около 11 лет назад

Google Chrome before 39.0.2171.65 on Android does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY_BROWSABLE, which allows remote attackers to bypass intended access restrictions via a crafted web site.

debian
около 11 лет назад

Google Chrome before 39.0.2171.65 on Android does not prevent navigati ...

github
больше 3 лет назад

Google Chrome before 39.0.2171.65 on Android does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY_BROWSABLE, which allows remote attackers to bypass intended access restrictions via a crafted web site.

EPSS

Процентиль: 43%
0.0021
Низкий

4 Medium

CVSS2