Description
Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
References (12)
Core 12
Core References
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5PAGL5M2KGYPN3VEQCRJJE6NA7D5YG5X/
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KQJB6ZPRLKV6WCMX2PRRRQBFAOXFBK6B/
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MRWRAXAFR3JR7XCFWTHC2KALSZKWACCE/
Mailing List mailing-list
http://www.openwall.com/lists/oss-security/2023/04/21/3
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6QL5OGMSHRQ26FTYWZUXVNWB2VHOSVXK/
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5OKKVEUQAAGH3NHMX3WHWKRPYU4QFKTQ/
Third Party Advisory vendor-advisory
https://www.debian.org/security/2023/dsa-5397
Third Party Advisory vendor-advisory
https://www.debian.org/security/2023/dsa-5396
Mailing List, Third Party Advisory vendor-advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC7DMUX37BRCLAI4VPQYHDUVEGTNYN5A/
Mailing List mailing-list
https://lists.debian.org/debian-lts-announce/2023/05/msg00011.html
Release Notes, Vendor Advisory
https://chromereleases.googleblog.com/2022/01/stable-channel-update-for-desktop.html
Exploit, Issue Tracking, Patch, Vendor Advisory
https://crbug.com/1248444
Scores
CVSS v3
6.5
EPSS
0.0035
EPSS Percentile
57.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Details
CWE
CWE-346
Status
published
Products (4)
fedoraproject/fedora
34
fedoraproject/fedora
35
fedoraproject/fedora
36
google/chrome
< 97.0.4692.71
Published
Feb 12, 2022
Tracked Since
Feb 18, 2026