[Forgot Password]
Login  Register Subscribe

23631

 
 

115084

 
 

97147

 
 

909

 
 

78764

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2017-5107

Date: (C)2017-10-30   (M)2017-11-18 


A timing attack in SVG rendering in Google Chrome prior to 60.0.3112.78 for Linux, Windows, and Mac allowed a remote attacker to extract pixel values from a cross-origin page being iframe'd via a crafted HTML page.

CVSS Score: 4.3Access Vector:
Exploit Score: Access Complexity:
Impact Score: Authentication:
 Confidentiality:
 Integrity:
 Availability:





Reference:
BID-99950
DSA-3926
GLSA-201709-15
https://chromereleases.googleblog.com/2017/07/stable-channel-update-for-desktop.html
https://crbug.com/686253

OVAL    11
oval:org.secpod.oval:def:41522
oval:org.secpod.oval:def:113139
oval:org.secpod.oval:def:113068
oval:org.secpod.oval:def:41591
...

© 2013 SecPod Technologies