PT-2014-8336 · Google+2 · Google Chrome+2

Published

2014-11-19

·

Updated

2024-06-15

·

CVE-2014-7905

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 39.0.2171.65
Description The issue allows remote attackers to bypass intended access restrictions via a crafted web site, as the software does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY BROWSABLE.
Recommendations For versions prior to 39.0.2171.65, update to version 39.0.2171.65 or later to resolve the issue.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2430
CVE-2014-7905
OPENSUSE-SU-2014_1626-1
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1

Affected Products

Alt Linux
Google Chrome
Suse