Security Advisory

CVE-2013-2905

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-08-21 10:00:00
Last updated 2024-08-06 15:52:21
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

The SharedMemory::Create function in memory/shared_memory_posix.cc in Google Chrome before 29.0.1547.57 uses weak permissions under /dev/shm/, which allows attackers to obtain sensitive information via direct access to a POSIX shared-memory file.