Описание
Google Chrome before 30.0.1599.66 preserves pending NavigationEntry objects in certain invalid circumstances, which allows remote attackers to spoof the address bar via a URL with a malformed scheme, as demonstrated by a nonexistent:12121 URL.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 31.0.1650.63-0ubuntu1~20131204.1 |
| lucid | ignored | end of life |
| precise | released | 30.0.1599.114-0ubuntu0.12.04.3 |
| quantal | released | 30.0.1599.114-0ubuntu0.12.10.2 |
| raring | released | 30.0.1599.114-0ubuntu0.13.04.2 |
| saucy | released | 30.0.1599.114-0ubuntu0.13.10.2 |
| upstream | released | 30.0.1599.66 |
Показывать по
4.3 Medium
CVSS2
Связанные уязвимости
Google Chrome before 30.0.1599.66 preserves pending NavigationEntry objects in certain invalid circumstances, which allows remote attackers to spoof the address bar via a URL with a malformed scheme, as demonstrated by a nonexistent:12121 URL.
Google Chrome before 30.0.1599.66 preserves pending NavigationEntry ob ...
Google Chrome before 30.0.1599.66 preserves pending NavigationEntry objects in certain invalid circumstances, which allows remote attackers to spoof the address bar via a URL with a malformed scheme, as demonstrated by a nonexistent:12121 URL.
4.3 Medium
CVSS2