Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-1235

Опубликовано: 19 апр. 2015
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

РелизСтатусПримечание
devel

released

43.0.2357.81-0ubuntu1.1179
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [43.0.2357.81-0ubuntu0.14.04.1.1089]]
lucid

ignored

end of life
precise

ignored

trusty

released

43.0.2357.81-0ubuntu0.14.04.1.1089
trusty/esm

DNE

trusty was released [43.0.2357.81-0ubuntu0.14.04.1.1089]
upstream

released

42.0.2311.90
utopic

released

43.0.2357.81-0ubuntu0.14.10.1.1131
vivid

released

43.0.2357.81-0ubuntu0.15.04.1.1170
wily

released

43.0.2357.81-0ubuntu1.1179

Показывать по

РелизСтатусПримечание
devel

released

1.7.7-0ubuntu0.15.04.1~ppa1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.6.5-0ubuntu0.14.04.1]]
lucid

DNE

precise

DNE

trusty

released

1.6.5-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1.6.5-0ubuntu0.14.04.1]
upstream

released

1.6.5
utopic

released

1.6.5-0ubuntu0.14.10.1
vivid

released

1.6.5-0ubuntu0.15.04.1
wily

released

1.7.7-0ubuntu0.15.04.1~ppa1

Показывать по

EPSS

Процентиль: 78%
0.01132
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

nvd
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

debian
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNod ...

github
больше 3 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

fstec
почти 11 лет назад

Уязвимость браузера Google Chrome, позволяющая удаленному нарушителю обойти правила ограничения домена

EPSS

Процентиль: 78%
0.01132
Низкий

5 Medium

CVSS2