bugs.chromium.orgConfirmation
http://bugs.chromium.org/40445 CVE-2010-1663
Google Chrome 4.1.249.1059 - Cross Origin Bypass in Google URL (GURL)
Record summary
CVE-2010-1663 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGoogle Chrome 4.1.249.1059 - Cross Origin Bypass in Google URL (GURL)ExploitDB exploitby Jordi ChancelNot analyzed1 file
References
6googlechromereleases.blogspot.comConfirmation
http://googlechromereleases.blogspot.com/2010/04/stable-update-bug-and-security-fixes.html 39651Third-party advisory
http://secunia.com/advisories/39651 ADV-2010-1016vdb entry
http://www.vupen.com/english/advisories/2010/1016 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-1663 oval:org.mitre.oval:def:6813vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6813