Описание
Lack of special casing of Android ashmem in Google Chrome prior to 65.0.3325.146 allowed a remote attacker who had compromised the renderer process to bypass inter-process read only guarantees via a crafted HTML page.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 65.0.3325.181-0ubuntu0.17.10.1 |
| bionic | not-affected | 65.0.3325.146-0ubuntu1 |
| cosmic | not-affected | 65.0.3325.146-0ubuntu1 |
| devel | not-affected | 65.0.3325.146-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [65.0.3325.181-0ubuntu0.14.04.1]] |
| precise/esm | DNE | |
| trusty | released | 65.0.3325.181-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [65.0.3325.181-0ubuntu0.14.04.1] |
| upstream | released | 65.0.3325.146 |
| xenial | released | 65.0.3325.181-0ubuntu0.16.04.1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | DNE | |
| cosmic | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [Ubuntu touch end-of-life]] |
| esm-infra/xenial | ignored | Ubuntu touch end-of-life |
| precise/esm | DNE | |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | trusty was ignored [Ubuntu touch end-of-life] |
| upstream | needs-triage |
Показывать по
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
Lack of special casing of Android ashmem in Google Chrome prior to 65.0.3325.146 allowed a remote attacker who had compromised the renderer process to bypass inter-process read only guarantees via a crafted HTML page.
Lack of special casing of Android ashmem in Google Chrome prior to 65.0.3325.146 allowed a remote attacker who had compromised the renderer process to bypass inter-process read only guarantees via a crafted HTML page.
Lack of special casing of Android ashmem in Google Chrome prior to 65. ...
Lack of special casing of Android ashmem in Google Chrome prior to 65.0.3325.146 allowed a remote attacker who had compromised the renderer process to bypass inter-process read only guarantees via a crafted HTML page.
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3