Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2015-1297
HistorySep 03, 2015 - 10:59 p.m.

CVE-2015-1297

2015-09-0322:59:00
Debian Security Bug Tracker
security-tracker.debian.org
14

EPSS

0.011

Percentile

84.8%

The WebRequest API implementation in extensions/browser/api/web_request/web_request_api.cc in Google Chrome before 45.0.2454.85 does not properly consider a request’s source before accepting the request, which allows remote attackers to bypass intended access restrictions via a crafted (1) app or (2) extension.

OSVersionArchitecturePackageVersionFilename
Debian9allchromium-browser< 70.0.3538.110-1~deb9u1chromium-browser_70.0.3538.110-1~deb9u1_all.deb