[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Security bypass vulnerability in Google Chrome via a crafted web site (dpkg)

ID: oval:org.secpod.oval:def:17724Date: (C)2014-05-08   (M)2022-09-09
Class: VULNERABILITYFamily: unix




The host is installed with Google Chrome before 6.0.472.53 and is prone to security bypass vulnerability. A flaw is present in the application, which fails to properly restrict read access to images derived from CANVAS elements. Successful exploitation allows attackers to bypass the Same Origin Policy and obtain potentially sensitive image data.

Platform:
Linux
Product:
Google Chrome
Reference:
CVE-2010-3259
CVE    1
CVE-2010-3259
CPE    491
cpe:/a:google:chrome:2.0.169.0
cpe:/a:google:chrome:5.0.354.1
cpe:/a:google:chrome:5.0.354.0
cpe:/a:google:chrome:2.0.169.1
...

© SecPod Technologies