CVE Database
/

CVE-2017-5046

Back to search

CVE-2017-5046

Published: Apr 24, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android had insufficient policy enforcement, which allowed a remote attacker to spoof the location object via a crafted HTML page, related to Blink information disclosure.

VendorProductVersions

n/a

Google Chrome prior to 57.0.2987.98 for Mac, Windows and Linux, and 57.0.2987.108 for Android

affected
Google Chrome prior to 57.0.2987.98 for Mac, Windows and Linux, and 57.0.2987.108 for Android

References

GLSA-201704-02
vendor-advisory
x_refsource_GENTOO
https://crbug.com/680409
x_refsource_CONFIRM
DSA-3810
vendor-advisory
x_refsource_DEBIAN
96767
vdb-entry
x_refsource_BID
RHSA-2017:0499
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2017-5046 - Security Vulnerability | QwikSec