CVE Database
/

CVE-2017-5096

Back to search

CVE-2017-5096

Published: Oct 27, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

Insufficient policy enforcement during navigation between different schemes in Google Chrome prior to 60.0.3112.78 for Android allowed a remote attacker to perform cross origin content download via a crafted HTML page, related to intents.

VendorProductVersions

n/a

Google Chrome prior to 60.0.3112.78 for Android

affected
Google Chrome prior to 60.0.3112.78 for Android

References

https://crbug.com/714442
x_refsource_MISC
GLSA-201709-15
vendor-advisory
x_refsource_GENTOO
99950
vdb-entry
x_refsource_BID
RHSA-2017:1833
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now