CVE-2020-15959
CVE-2020-15959
Insufficient policy enforcement in networking in Google Chrome prior to 85.0.4183.102 allowed an attacker who convinced the user to enable logging to obtain potentially sensitive information from process memory via social engineering.
Productos afectados
Google · Chrome¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00072.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-09/msg00078.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-09/msg00081.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-10/msg00049.htmlhttps://chromereleases.googleblog.com/2020/09/stable-channel-update-for-desktop.htmlhttps://crbug.com/1122684https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FN7HZIGAOCZKBT4LV363BCPRA5FLY25I/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GNIYFJST4TFJYFZ27VODBOINCLBGULTD/https://security.gentoo.org/glsa/202101-30https://www.debian.org/security/2021/dsa-4824