Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-3170

Опубликовано: 27 авг. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4

Описание

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

РелизСтатусПримечание
devel

released

37.0.2062.94-0ubuntu1~pkg1065
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [37.0.2062.94-0ubuntu0.14.04.1~pkg1042]]
lucid

ignored

end of life
precise

released

37.0.2062.94-0ubuntu0.12.04.1~pkg909
trusty

released

37.0.2062.94-0ubuntu0.14.04.1~pkg1042
trusty/esm

DNE

trusty was released [37.0.2062.94-0ubuntu0.14.04.1~pkg1042]
upstream

released

37.0.2062.94

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

EPSS

Процентиль: 71%
0.00677
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

nvd
около 11 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

debian
около 11 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 ...

github
больше 3 лет назад

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

fstec
около 11 лет назад

Уязвимость браузера Google Chrome, позволяющая удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации

EPSS

Процентиль: 71%
0.00677
Низкий

6.4 Medium

CVSS2