The OneClickSigninBubbleView::WindowClosing function in browser/ui/views/sync/one_click_signin_bubble_view.cc in Google Chrome before 32.0.1700.76 on Windows and before 32.0.1700.77 on Mac OS X and Linux allows attackers to trigger a sync with an arbitrary Google account by leveraging improper handling of the closing of an untrusted signin confirm dialog.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-01-16T11:00:00
Updated: 2024-08-06T17:46:22.299Z
Reserved: 2013-11-05T00:00:00
Link: CVE-2013-6643
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-01-16T12:17:26.313
Modified: 2024-11-21T01:59:26.320
Link: CVE-2013-6643
Redhat
No data.