CVE-2011-3067 Information

Description

Google Chrome before 18.0.1025.151 allows remote attackers to bypass the Same Origin Policy via vectors related to replacement of IFRAME elements.

Reference

http://code.google.com/p/chromium/issues/detail?id=117583 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://osvdb.org/81037 http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa/glsa-201204-03.xml http://support.apple.com/kb/HT5400 http://support.apple.com/kb/HT5503 http://www.securityfocus.com/bid/52913 http://www.securitytracker.com/id?1026892 https://exchange.xforce.ibmcloud.com/vulnerabilities/74627 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A15342

Share on: