Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2009-0411
HistoryFeb 03, 2009 - 7:30 p.m.

CVE-2009-0411

2009-02-0319:30:00
Debian Security Bug Tracker
security-tracker.debian.org
15

EPSS

0.003

Percentile

69.7%

Google Chrome before 1.0.154.46 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via XMLHttpRequest calls and other web script.

OSVersionArchitecturePackageVersionFilename
Debian9allchromium-browser< 70.0.3538.110-1~deb9u1chromium-browser_70.0.3538.110-1~deb9u1_all.deb

EPSS

0.003

Percentile

69.7%

Related for DEBIANCVE:CVE-2009-0411