Описание
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support |
devel | not-affected | code not present |
esm-apps/noble | not-affected | code not present |
esm-infra/focal | DNE | focal was not-affected [code not present] |
focal | not-affected | code not present |
jammy | not-affected | code not present |
mantic | not-affected | code not present |
noble | not-affected | code not present |
trusty | ignored | end of standard support |
upstream | released |
Показывать по
EPSS
8.8 High
CVSS3
Связанные уязвимости
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Chromium: CVE-2024-1675 Insufficient policy enforcement in Download
Insufficient policy enforcement in Download in Google Chrome prior to ...
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Уязвимость компонента Download браузера Google Chrome и Microsoft Edge, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS
8.8 High
CVSS3