Description
content/browser/web_contents/web_contents_impl.cc in Google Chrome before 44.0.2403.89 does not ensure that a PDF document's modal dialog is closed upon navigation to an interstitial page, which allows remote attackers to spoof URLs via a crafted document, as demonstrated by the alert_dialog.pdf document.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3315-1 | chromium-browser security update |
EUVD |
EUVD-2015-1419 | content/browser/web_contents/web_contents_impl.cc in Google Chrome before 44.0.2403.89 does not ensure that a PDF document's modal dialog is closed upon navigation to an interstitial page, which allows remote attackers to spoof URLs via a crafted document, as demonstrated by the alert_dialog.pdf document. |
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Subscriptions
Debian
Subscribe
Debian Linux
Subscribe
Google
Subscribe
Chrome
Subscribe
Opensuse
Subscribe
Opensuse
Subscribe
Redhat
Subscribe
Enterprise Linux Desktop Supplementary
Subscribe
Enterprise Linux Server Supplementary
Subscribe
Enterprise Linux Server Supplementary Eus
Subscribe
Enterprise Linux Workstation Supplementary
Subscribe
Rhel Extras
Subscribe
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2024-08-06T04:40:18.546Z
Reserved: 2015-01-21T00:00:00.000Z
Link: CVE-2015-1278
No data.
Status : Deferred
Published: 2015-07-23T00:59:07.867
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-1278
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD