CVE-2013-2835
16.04.2013, 20:55
Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins, which allows remote attackers to bypass the domain-whitelist protection mechanism via a crafted web site, a different vulnerability than CVE-2013-2834.Enginsight
Vendor | Product | Version |
---|---|---|
chrome_os | 𝑥 ≤ 26.0.1410.56 | |
chrome_os | 26.0.1410.0 | |
chrome_os | 26.0.1410.1 | |
chrome_os | 26.0.1410.3 | |
chrome_os | 26.0.1410.4 | |
chrome_os | 26.0.1410.5 | |
chrome_os | 26.0.1410.6 | |
chrome_os | 26.0.1410.7 | |
chrome_os | 26.0.1410.8 | |
chrome_os | 26.0.1410.9 | |
chrome_os | 26.0.1410.10 | |
chrome_os | 26.0.1410.11 | |
chrome_os | 26.0.1410.12 | |
chrome_os | 26.0.1410.14 | |
chrome_os | 26.0.1410.15 | |
chrome_os | 26.0.1410.16 | |
chrome_os | 26.0.1410.17 | |
chrome_os | 26.0.1410.18 | |
chrome_os | 26.0.1410.19 | |
chrome_os | 26.0.1410.20 | |
chrome_os | 26.0.1410.21 | |
chrome_os | 26.0.1410.22 | |
chrome_os | 26.0.1410.23 | |
chrome_os | 26.0.1410.24 | |
chrome_os | 26.0.1410.25 | |
chrome_os | 26.0.1410.26 | |
chrome_os | 26.0.1410.27 | |
chrome_os | 26.0.1410.28 | |
chrome_os | 26.0.1410.29 | |
chrome_os | 26.0.1410.30 | |
chrome_os | 26.0.1410.31 | |
chrome_os | 26.0.1410.32 | |
chrome_os | 26.0.1410.33 | |
chrome_os | 26.0.1410.34 | |
chrome_os | 26.0.1410.35 | |
chrome_os | 26.0.1410.36 | |
chrome_os | 26.0.1410.37 | |
chrome_os | 26.0.1410.38 | |
chrome_os | 26.0.1410.39 | |
chrome_os | 26.0.1410.40 | |
chrome_os | 26.0.1410.41 | |
chrome_os | 26.0.1410.42 | |
chrome_os | 26.0.1410.43 | |
chrome_os | 26.0.1410.44 | |
chrome_os | 26.0.1410.45 | |
chrome_os | 26.0.1410.46 | |
chrome_os | 26.0.1410.47 | |
chrome_os | 26.0.1410.48 | |
chrome_os | 26.0.1410.49 | |
chrome_os | 26.0.1410.50 | |
chrome_os | 26.0.1410.51 | |
chrome_os | 26.0.1410.52 | |
chrome_os | 26.0.1410.54 | |
chrome_os | 26.0.1410.55 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References