Race Condition Vulnerability in Google Chrome Affects Multiple Platforms
CVE-2017-5061

5.3MEDIUM

Key Information:

Vendor
Google
Vendor
CVE Published:
27 October 2017

Summary

A race condition vulnerability was discovered in Google Chrome that affects users across Linux, Windows, and Mac platforms. This flaw allows remote attackers to potentially spoof the contents of the Omnibox (URL bar) using a specially crafted HTML page. Exploiting this vulnerability could lead to significant security risks for users, compromising the integrity of their browsing experience and allowing malicious actors to mislead users with counterfeit information.

Affected Version(s)

Google Chrome prior to 58.0.3029.81 for Linux, Windows and Mac Google Chrome prior to 58.0.3029.81 for Linux, Windows and Mac

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.