8.3 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:P/I:P/A:C
8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
0.004 Low
EPSS
Percentile
74.3%
Blink, as used in Google Chrome before 50.0.2661.94, does not ensure that
frames satisfy a check for the same renderer process in addition to a Same
Origin Policy check, which allows remote attackers to cause a denial of
service (memory corruption) or possibly have unspecified other impact via a
crafted web site, related to BindingSecurity.cpp and DOMWindow.cpp.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 14.04 | noarch | chromium-browser | < 50.0.2661.102-0ubuntu0.14.04.1.1117 | UNKNOWN |
ubuntu | 15.10 | noarch | chromium-browser | < 50.0.2661.102-0ubuntu0.15.10.1.1227 | UNKNOWN |
ubuntu | 16.04 | noarch | chromium-browser | < 50.0.2661.102-0ubuntu0.16.04.1.1237 | UNKNOWN |
ubuntu | 14.04 | noarch | oxide-qt | < 1.14.8-0ubuntu0.14.04.1 | UNKNOWN |
ubuntu | 15.10 | noarch | oxide-qt | < 1.14.8-0ubuntu0.15.10.1 | UNKNOWN |
ubuntu | 16.04 | noarch | oxide-qt | < 1.14.8-0ubuntu0.16.04.1 | UNKNOWN |
8.3 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:P/I:P/A:C
8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
0.004 Low
EPSS
Percentile
74.3%