Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-3118
HistoryAug 24, 2010 - 12:00 a.m.

CVE-2010-3118

2010-08-2400:00:00
ubuntu.com
ubuntu.com
12

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

61.1%

The autosuggest feature in the Omnibox implementation in Google Chrome
before 5.0.375.127 does not anticipate entry of passwords, which might
allow remote attackers to obtain sensitive information by reading the
network traffic generated by this feature.

Notes

Author Note
mdeslaur chromium-specific
OSVersionArchitecturePackageVersionFilename
ubuntu10.04noarchchromium-browser< 6.0.472.53~r57914-0ubuntu0.10.04.1UNKNOWN

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

61.1%