PT-2013-2685 · Google · Google Chrome

Publicado

2013-02-21

·

Atualizado

2024-06-15

·

CVE-2013-0889

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 25.0.1364.97 on Windows and Linux, and prior to 25.0.1364.99 on Mac OS X
Description The issue is related to the improper enforcement of a user gesture requirement before proceeding with a file download. This might make it easier for remote attackers to execute arbitrary code via a crafted file.
Recommendations For Google Chrome versions prior to 25.0.1364.97 on Windows and Linux, and prior to 25.0.1364.99 on Mac OS X, update to version 25.0.1364.97 or later on Windows and Linux, and to version 25.0.1364.99 or later on Mac OS X.

Correção

Incorrect Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-0889
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1

Produtos afetados

Google Chrome