Lucene search

K
chromeHttps://chromereleases.googleblog.comGCSA-6163053249244994181
HistorySep 24, 2012 - 12:00 a.m.

Chrome for iOS Update

2012-09-2400:00:00
https://chromereleases.googleblog.com
chromereleases.googleblog.com
11

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

0.001 Low

EPSS

Percentile

48.0%

Chrome for iOS has been updated to 21.0.1180.82 and is now available in the App Store. This version brings compatibility with the new iPhone 5, along with fixes for Gmail on iOS 6. You can get the update via the App Store, or from the update prompt inside of Chrome. Known issues are available on the Chrome support site. If you find a new issue, please let us know by filing a bug.

Security fixes and rewards:
Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix.

[$500] [146760] Medium CVE-2012-2898: URL bar spoofing with SSL error messages. Credit to Łukasz Pilorz.
[$500] [147625] Medium CVE-2012-2899: UXSS/SOP bypass with document.write. Credit to Łukasz Pilorz.

Jason Kersey
Google Chrome

Affected configurations

Vulners
Node
googlechromeRange<21.0.1180.82
CPENameOperatorVersion
google chromelt21.0.1180.82

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

0.001 Low

EPSS

Percentile

48.0%

Related for GCSA-6163053249244994181