Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-13705

Опубликовано: 25 нояб. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 4.3

Описание

Insufficient policy enforcement in extensions in Google Chrome prior to 78.0.3904.70 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension.

РелизСтатусПримечание
bionic

released

78.0.3904.70-0ubuntu0.18.04.2
devel

released

78.0.3904.70-0ubuntu1
disco

released

78.0.3904.70-0ubuntu0.19.04.4
eoan

released

79.0.3945.79-0ubuntu0.19.10.2
esm-infra-legacy/trusty

DNE

precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

upstream

released

78.0.3904.70
xenial

released

78.0.3904.70-0ubuntu0.16.04.2

Показывать по

Ссылки на источники

4.3 Medium

CVSS2

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 6 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 78.0.3904.70 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension.

CVSS3: 4.3
nvd
около 6 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 78.0.3904.70 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension.

CVSS3: 4.3
debian
около 6 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior t ...

github
больше 3 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 78.0.3904.70 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension.

CVSS3: 6.5
fstec
около 6 лет назад

Уязвимость браузера Google Chrome, связанная с отсутствием защиты служебных данных, позволяющая нарушителю получить несанкционированный доступ к информации

4.3 Medium

CVSS2

4.3 Medium

CVSS3