Описание
extensions/renderer/resources/binding.js in the extension bindings in Google Chrome before 51.0.2704.63 does not properly use prototypes, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 51.0.2704.79-0ubuntu2~cm1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [51.0.2704.79-0ubuntu0.14.04.1.1121]] |
| precise | ignored | |
| trusty | released | 51.0.2704.79-0ubuntu0.14.04.1.1121 |
| trusty/esm | DNE | trusty was released [51.0.2704.79-0ubuntu0.14.04.1.1121] |
| upstream | released | 51.0.2704.63-1 |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE | |
| wily | ignored | end of life |
| xenial | released | 51.0.2704.79-0ubuntu0.16.04.1.1242 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected] |
| esm-infra/xenial | not-affected | |
| precise | DNE | |
| trusty | not-affected | |
| trusty/esm | DNE | trusty was not-affected |
| upstream | not-affected | |
| vivid/stable-phone-overlay | not-affected | |
| vivid/ubuntu-core | DNE | |
| wily | not-affected |
Показывать по
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
extensions/renderer/resources/binding.js in the extension bindings in Google Chrome before 51.0.2704.63 does not properly use prototypes, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
extensions/renderer/resources/binding.js in the extension bindings in Google Chrome before 51.0.2704.63 does not properly use prototypes, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
extensions/renderer/resources/binding.js in the extension bindings in ...
extensions/renderer/resources/binding.js in the extension bindings in Google Chrome before 51.0.2704.63 does not properly use prototypes, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
Уязвимость браузера Google Chrome, позволяющая нарушителю обойти существующую политику ограничения доступа
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3