Beveiligingsadvies

CVE-2016-5218

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-01-19 05:43:00
Laatst bijgewerkt 2024-08-06 00:53:48
Toegewezen door Chrome
CVSS-score geen score
Status PUBLISHED

Beschrijving

The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled navigation within PDFs, which allowed a remote attacker to temporarily spoof the contents of the Omnibox (URL bar) via a crafted HTML page containing PDF data.