Beveiligingsadvies

CVE-2025-1568

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-04-16 23:06:28
Laatst bijgewerkt 2025-05-20 14:33:23
Toegewezen door ChromeOS
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Access Control Vulnerability in Gerrit chromiumos project configuration in Google ChromeOS 16063.87.0 allows an attacker with a registered Gerrit account to inject malicious code into ChromeOS projects and potentially achieve Remote Code Execution and Denial of Service via editing trusted pipelines by insufficient access controls and misconfigurations in Gerrit's project.config.