Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-1302

Опубликовано: 11 нояб. 2015
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

The PDF viewer in Google Chrome before 46.0.2490.86 does not properly restrict scripting messages and API exposure, which allows remote attackers to bypass the Same Origin Policy via an unintended embedder or unintended plugin loading, related to pdf.js and out_of_process_instance.cc.

РелизСтатусПримечание
devel

released

47.0.2526.73-0ubuntu1.1218
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [47.0.2526.73-0ubuntu0.14.04.1.1106]]
precise

ignored

trusty

released

47.0.2526.73-0ubuntu0.14.04.1.1106
trusty/esm

DNE

trusty was released [47.0.2526.73-0ubuntu0.14.04.1.1106]
upstream

released

46.0.2490.86
vivid

released

47.0.2526.73-0ubuntu0.15.04.1.1190
wily

released

47.0.2526.73-0ubuntu0.15.10.1.1215

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid

not-affected

wily

not-affected

Показывать по

7.5 High

CVSS2

Связанные уязвимости

redhat
около 10 лет назад

The PDF viewer in Google Chrome before 46.0.2490.86 does not properly restrict scripting messages and API exposure, which allows remote attackers to bypass the Same Origin Policy via an unintended embedder or unintended plugin loading, related to pdf.js and out_of_process_instance.cc.

nvd
около 10 лет назад

The PDF viewer in Google Chrome before 46.0.2490.86 does not properly restrict scripting messages and API exposure, which allows remote attackers to bypass the Same Origin Policy via an unintended embedder or unintended plugin loading, related to pdf.js and out_of_process_instance.cc.

debian
около 10 лет назад

The PDF viewer in Google Chrome before 46.0.2490.86 does not properly ...

suse-cvrf
около 10 лет назад

Security update for Chromium

suse-cvrf
около 10 лет назад

Security update for Chromium

7.5 High

CVSS2