Beveiligingsadvies

CVE-2017-5118

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-10-27 05:00:00
Laatst bijgewerkt 2024-08-05 14:47:44
Toegewezen door Chrome
CVSS-score geen score
Status PUBLISHED

Beschrijving

Blink in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, failed to correctly propagate CSP restrictions to javascript scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page.