Security Advisory

CVE-2014-9646

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-01-27 11:00:00
Last updated 2024-08-06 13:47:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Unquoted Windows search path vulnerability in the GoogleChromeDistribution::DoPostUninstallOperations function in installer/util/google_chrome_distribution.cc in the uninstall-survey feature in Google Chrome before 40.0.2214.91 allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% directory, as demonstrated by program.exe, a different vulnerability than CVE-2015-1205.