PT-2023-7510 · Google+3 · Google Chrome+3

Axel Chong

·

Publicado

2023-06-24

·

Atualizado

2024-11-29

·

CVE-2023-6512

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 120.0.6099.62
Description The issue is related to an inappropriate implementation in the Web Browser UI, allowing a remote attacker to potentially spoof the contents of an iframe dialog context menu via a crafted HTML page. This could be exploited by a remote attacker using a specially crafted HTML page.
Recommendations For Google Chrome versions prior to 120.0.6099.62, update to version 120.0.6099.62 or later to resolve the issue. As a temporary workaround, consider restricting the use of iframe dialog context menus until a patch is applied.

Exploit

Correção

Improperly Implemented Security Check for Standard

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2023-8370
ALT-PU-2024-10294
ALT-PU-2024-14286
ALT-PU-2024-14830
BDU:2023-08555
CVE-2023-6512
DSA-5573-1
MGASA-2023-0355
OPENSUSE-SU-2024:0020-1
OPENSUSE-SU-2024:13583-1
OPENSUSE-SU-2024:13585-1

Produtos afetados

Alt Linux
Astra Linux
Google Chrome
Red Os