Google Chrome Pop-Up Address Bar URI Spoofing Vulnerability

Google Chrome is affected by a URI-spoofing vulnerability because it fails to adequately handle user-supplied data.

An attacker may leverage this issue by inserting arbitrary content to spoof the source URI of a file presented to an unsuspecting user in a popup window. This may lead to a false sense of trust because the victim may be presented with a source URI of a trusted site while interacting with the attacker's malicious site.

Versions prior to Chrome 0.3.154.9 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus