Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3956

Опубликовано: 09 фев. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

РелизСтатусПримечание
devel

released

17.0.963.46~r119351-0ubuntu1
hardy

DNE

lucid

released

17.0.963.56~r121963-0ubuntu0.10.04.1
maverick

released

17.0.963.56~r121963-0ubuntu0.10.10.1
natty

released

17.0.963.56~r121963-0ubuntu0.11.04.1
oneiric

released

17.0.963.56~r121963-0ubuntu0.11.10.1
upstream

released

17.0.963.46

Показывать по

EPSS

Процентиль: 29%
0.00104
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 14 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

debian
почти 14 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does ...

github
больше 3 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

EPSS

Процентиль: 29%
0.00104
Низкий

6.8 Medium

CVSS2