Oval Definition:oval:org.mitre.oval:tst:77722
Comment:Determine if the version of Google Chrome is less than or equal to 0.1.42.3
Type:registry_testNamespace:windows
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:15888
State:oval:org.mitre.oval:ste:17194
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:14067
V
The protocolIs function in platform/KURLGoogle.cpp in WebCore in WebKit before r55822, as used in Google Chrome before 4.1.249.1036 and Flock Browser 3.x before 3.0.0.4112, does not properly handle whitespace at the beginning of a URL, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted javascript: URL, as demonstrated by a \x00javascript:alert sequence.
2014-04-07
oval:org.mitre.oval:def:14275
V
Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to truncate the URL shown in the HTTP Basic Authentication dialog via unknown vectors.
2014-04-07
oval:org.mitre.oval:def:14292
V
Google Chrome before 4.1.249.1036 does not have the expected behavior for attempts to delete Web SQL Databases and clear the Strict Transport Security (STS) state, which has unspecified impact and attack vectors.
2014-04-07
BACK