Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2015-1211
HistoryFeb 06, 2015 - 11:59 a.m.

CVE-2015-1211

2015-02-0611:59:00
Debian Security Bug Tracker
security-tracker.debian.org
18

EPSS

0.009

Percentile

83.2%

The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does not properly restrict the URI scheme during a ServiceWorker registration, which allows remote attackers to gain privileges via a filesystem: URI.

OSVersionArchitecturePackageVersionFilename
Debian9allchromium-browser< 70.0.3538.110-1~deb9u1chromium-browser_70.0.3538.110-1~deb9u1_all.deb