Описание
The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 17.0.963.46~r119351-0ubuntu1 |
| hardy | DNE | |
| lucid | released | 17.0.963.56~r121963-0ubuntu0.10.04.1 |
| maverick | released | 17.0.963.56~r121963-0ubuntu0.10.10.1 |
| natty | released | 17.0.963.56~r121963-0ubuntu0.11.04.1 |
| oneiric | released | 17.0.963.56~r121963-0ubuntu0.11.10.1 |
| upstream | released | 17.0.963.46 |
Показывать по
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.
The extension implementation in Google Chrome before 17.0.963.46 does ...
The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.
EPSS
6.8 Medium
CVSS2