Insufficient Watchdog Timer in Google Chrome Can Lead to URL Spoofing
CVE-2017-5067
Key Information:
- Vendor
Google
- Vendor
- CVE Published:
- 27 October 2017
What is CVE-2017-5067?
A vulnerability in Google Chrome prior to version 58.0.3029.81 for Linux, Windows, and Mac allows attackers to manipulate the Omnibox content. This issue arises from an inadequate watchdog timer during navigation, enabling remote attackers to craft specific HTML pages to spoof URLs displayed in the address bar. Users may be misled into believing they are visiting a legitimate site, thereby posing significant security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Google Chrome prior to 58.0.3029.81 for Linux, Windows and Mac Google Chrome prior to 58.0.3029.81 for Linux, Windows and Mac
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved