Описание
The UnescapeURLWithOffsetsImpl function in net/base/escape.cc in Google Chrome before 34.0.1847.116 does not properly handle bidirectional Internationalized Resource Identifiers (IRIs), which makes it easier for remote attackers to spoof URLs via crafted use of right-to-left (RTL) Unicode text.
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | 34.0.1847.116-0ubuntu2 | 
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was not-affected [34.0.1847.116-0ubuntu2]] | 
| lucid | ignored  | end of life | 
| precise | released  | 34.0.1847.116-0ubuntu~1.12.04.0~pkg884 | 
| quantal | released  | 34.0.1847.116-0ubuntu~1.12.10.0~pkg900 | 
| saucy | released  | 34.0.1847.116-0ubuntu~1.13.10.0~pkg991 | 
| trusty | not-affected  | 34.0.1847.116-0ubuntu2 | 
| trusty/esm | DNE  | trusty was not-affected [34.0.1847.116-0ubuntu2] | 
| upstream | released  | 34.0.1847.116 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was not-affected] | 
| lucid | DNE  | |
| precise | DNE  | |
| quantal | DNE  | |
| saucy | DNE  | |
| trusty | not-affected  | |
| trusty/esm | DNE  | trusty was not-affected | 
| upstream | not-affected  | 
Показывать по
7.5 High
CVSS2
Связанные уязвимости
The UnescapeURLWithOffsetsImpl function in net/base/escape.cc in Google Chrome before 34.0.1847.116 does not properly handle bidirectional Internationalized Resource Identifiers (IRIs), which makes it easier for remote attackers to spoof URLs via crafted use of right-to-left (RTL) Unicode text.
The UnescapeURLWithOffsetsImpl function in net/base/escape.cc in Googl ...
The UnescapeURLWithOffsetsImpl function in net/base/escape.cc in Google Chrome before 34.0.1847.116 does not properly handle bidirectional Internationalized Resource Identifiers (IRIs), which makes it easier for remote attackers to spoof URLs via crafted use of right-to-left (RTL) Unicode text.
Уязвимость браузера Google Chrome, позволяющая злоумышленнику подменить URL-адреса
7.5 High
CVSS2