Oval Definition:
oval:org.opensuse.security:def:20143170
Revision Date
:
2022-06-30
Version
:
1
Title
:
CVE-2014-3170
Description
:
extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2014-3170
Mitre CVE-2014-3170
SUSE CVE-2014-3170
openSUSE-SU-2014:1151-1
Platform(s)
:
openSUSE 12.3 Update
openSUSE 13.1
openSUSE Leap 15.0
openSUSE Tumbleweed
Product(s)
:
Definition Synopsis
openSUSE 13.1 is installed
AND
Package Information
chromedriver-37.0.2062.94-50.1 is installed
OR
chromium-37.0.2062.94-50.1 is installed
OR
chromium-desktop-gnome-37.0.2062.94-50.1 is installed
OR
chromium-desktop-kde-37.0.2062.94-50.1 is installed
OR
chromium-ffmpegsumo-37.0.2062.94-50.1 is installed
Definition Synopsis
openSUSE Leap 15.0 is installed
AND
Package Information
chromium-66.0.3359.170-lp150.1 is installed
AND
chromium is signed with openSUSE key
Definition Synopsis
openSUSE Tumbleweed is installed
AND
Package Information
chromedriver-55.0.2883.75-3.1 is installed
OR
chromium-55.0.2883.75-3.1 is installed
BACK